Description
A flaw was found in moodle before versions 3.7.1, 3.6.5, 3.5.7. A sesskey (CSRF) token was not being utilised by the XML loading/unloading admin tool.
Remediation
References
Related Vulnerabilities
Oracle Application Server CVE-2006-0435 Vulnerability (CVE-2006-0435)
WordPress Plugin Google Captcha (reCAPTCHA) by BestWebSoft Security Bypass (1.12)
WordPress Plugin WordPress Book List Arbitrary File Upload (5.0.11)
Ruby on Rails Inefficient Regular Expression Complexity Vulnerability (CVE-2024-26142)