CVE-2021-21809

All FrameworksMoodleCWE-OtherCVE-2021-21809

CVE-2021-21809

State: PUBLISHED · Published: 2021-06-23 · Updated: 2024-08-03 · Assigner: talos
Description
A command execution vulnerability exists in the default legacy spellchecker plugin in Moodle 3.10. A specially crafted series of HTTP requests can lead to command execution. An attacker must have administrator privileges to exploit this vulnerabilities.
CWE
Affected
CVSS
References
Source
cvelistV5-main/cves/2021/21xxx/CVE-2021-21809.json