Description
In Moodle 2.x and 3.x, remote authenticated users can take ownership of arbitrary blogs by editing an external blog link.
Remediation
References
Related Vulnerabilities
WordPress Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2011-4898)
WordPress 3.7.x Multiple Vulnerabilities (3.7 - 3.7.18)
WordPress Plugin BP Portfolio Cross-Site Scripting (1.0.2)
XWiki Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2023-29211)