cbcvebase.
CVE-2023-5547
published 2023-11-09

CVE-2023-5547: The course upload preview contained an XSS risk for users uploading unsafe data.

medium6.1CVSS 3.1
AVNACLPRNUIRSCCLILAN
The course upload preview contained an XSS risk for users uploading unsafe data.

Affected

10 ranges
VendorProductVersion rangeFixed in
fedoraprojectfedora
fedoraprojectfedora
fedoraprojectfedora
moodlemoodle>= 0 < 4.3.0-rc24.3.0-rc2
moodlemoodle>= 3.11.0 < 3.11.173.11.17
moodlemoodle>= 3.9.0 < 3.9.243.9.24
moodlemoodle>= 4.0.0 < 4.0.114.0.11
moodlemoodle>= 4.1.0 < 4.1.64.1.6
moodlemoodle>= 4.2.0 < 4.2.34.2.3
redhatenterprise_linux

CVSS provenance

nvdv3.16.1MEDIUMCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
osv6.1MEDIUM