CVE-2007-6538
published 2007-12-27CVE-2007-6538: SQL injection vulnerability in ing/blocks/mrbs/code/web/view_entry.php in the MRBS plugin for Moodle allows remote attackers to execute arbitrary SQL commands…
PriorityP345high7.5CVSS 2.0
AVNACLAuNCPIPAP
EXPLOIT
EPSS
3.84%
88.8th percentile
SQL injection vulnerability in ing/blocks/mrbs/code/web/view_entry.php in the MRBS plugin for Moodle allows remote attackers to execute arbitrary SQL commands via the id parameter.
Affected
2 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| mrbs | mrbs | — | — |
| mrbs | mrbs | — | — |
CVEs like this are exactly what “Exploited This Week” covers.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
No detection rules found.
No writeups or analysis indexed.
http://cvs.moodle.org/contrib/plugins/blocks/mrbs/web/view_entry.php?r1=1.1&r2=1.2http://osvdb.org/39619http://secunia.com/advisories/28198http://securityreason.com/securityalert/3492http://www.securityfocus.com/archive/1/485434/100/0/threadedhttp://www.securityfocus.com/archive/1/485455/100/200/threadedhttp://www.securityfocus.com/archive/1/485459/100/200/threadedhttp://www.securityfocus.com/bid/26977https://exchange.xforce.ibmcloud.com/vulnerabilities/39190http://cvs.moodle.org/contrib/plugins/blocks/mrbs/web/view_entry.php?r1=1.1&r2=1.2http://osvdb.org/39619http://secunia.com/advisories/28198http://securityreason.com/securityalert/3492http://www.securityfocus.com/archive/1/485434/100/0/threadedhttp://www.securityfocus.com/archive/1/485455/100/200/threadedhttp://www.securityfocus.com/archive/1/485459/100/200/threadedhttp://www.securityfocus.com/bid/26977https://exchange.xforce.ibmcloud.com/vulnerabilities/39190
2007-12-27
Published