Android Century
  • Home
  • Android Zone
    • Android Apps
    • Android Games
    • Apps APk Files
    • Games Apk Files
    • Apps Hack Tricks
  • Reviews
  • Fantasy Zone
    • Entertainment
    • Quotes and Status
    • Life Style
    • Home Made Tips
    • Hair Care
    • Skin Care
    • Fantasy Tips
  • Tricks
    • Free Recharge
    • Free Internet
    • shopping Cashback
    • Recharge Cashback
  • Tech
  • Mobiles
  • Gadgets
  • News
  • How To's
  • Software
Breaking
Loading...

Featured post

How to Take Great Photos With Apple's iPhone X

Recent Posts

Labels

  • Android Apk Files
  • Android Apps
  • Android Games
  • Apps Apk Files
  • Entertainment
  • Fantasy Tips
  • Gadgets
  • Hair Care
  • HomeMade Tips
  • How To's
  • News
  • Quotes
  • Quotes & Status
  • Recharge Cashback
  • Recharge Promo Codes
  • Shopping Cashback
  • Technology
  • skin care
Home / News / Flaws in Moodle CMS positioned hundreds of e-gaining knowledge of websites at chance

Flaws in Moodle CMS positioned hundreds of e-gaining knowledge of websites at chance

Latest Govt. Jobs 23:17:00 News Edit
Serious flaws are patched in the Moodle e-learning platform.

Organizations that use the popular Moodle learning management system should deploy the latest patches as soon as possible because they fix vulnerabilities that could allow attackers to take over web servers.
Moodle is an open source platform used by schools, universities, and other organizations to set up websites with interactive online courses. It's used by more than 78,000 e-learning websites from 234 countries that together have more than 100 million users.
A week ago the Moodle developers released updates for the still supported branches of the platform: 3.2.2, 3.1.5, 3.0.9 and 2.7.19. The release notes mentioned that "a number of security related issues were resolved," but didn't provide any additional details about their nature or impact.
The severity of the flaws became apparent Monday, when security researcher Netanel Rubin, who found the vulnerabilities, published a detailed blog post about them. They don't seem too critical on their own, but when combined, they allow attackers to create hidden administrative accounts and execute malicious PHP code on the underlying server.
The exploit takes advantage of some false assumptions made by the developers, which Rubin described as a logic flaw, an Object Injection, a double SQL injection, and an overly permissive administrative dashboard.
The logic issue stems from the reimplementation of a certain function without taking into account decisions made by the original function's developers. According to the researcher, it is the result of "having too much code, too many developers and lacking documentation."
"Keep in mind that logical vulnerabilities can and will occur in almost all systems featuring a large code base," Rubin said. "Security issues in large code bases is, of course, not Moodle specific."
One factor that somewhat limits the impact of the flaws is that exploiting them requires an account on the targeted website. That's not much of a barrier though considering how many registered users these websites have.
Gaining administrative privileges on the Moodle platform is not only dangerous because attackers could install a PHP backdoor by uploading malicious plug-ins or templates, but also because Moodle installations store sensitive and private information about students taking online courses.
Share on Facebook Share on Twitter Share on Google Plus

RELATED POSTS


Xiaomi Redmi 5 launch

Vodafone partners with Tecno to off...

LG G7 with iPhone X-like notch
Flaws in Moodle CMS positioned hundreds of e-gaining knowledge of websites at chance Flaws in Moodle CMS positioned hundreds of e-gaining knowledge of websites at chance Reviewed by Latest Govt. Jobs on 23:17:00 Rating: 5

0 comments:

Post a Comment

Newer Post Older Post Home
Subscribe to: Post Comments ( Atom )

Search This Blog

TEST BOOK FOR GOVT ENTRANCE TEST

TEST BOOK FOR GOVT ENTRANCE TEST
Find All Latest book for preparation of SSC,RAILWAYBANK PO,RBI,BANK CLERK,GATE ME,GATE CE are available here in less prices, to check out the books click here

Translate

  • Popular Post
  • Random posts
  • Category

Popular Posts

  • Teen Patti Offer 2018: Refer and Earn Flipkart Vouchers Free
    Teen Patti Offer 2018: Refer and Earn Flipkart Vouchers Free
    Teen Patti Refer & Earn Offer:  Hey Guys! Today I make an article about Teen Patti Referral ...
  • Hands-on with the home windows 10 Creators update for the Xbox One: Beam recreation streaming arrives
    The Windows 10 Creators Update is here, now—yes,  now —but not (officially) on the PC. The ...
  • Taotronics TT-BH22 Headphones Review
    We make it a addiction to now not look up pricing of a product sooner than reviewing and if ...
  • Pentagon strongly condemns North Korea missile test
    The Pentagon on Monday strongly condemned North Korea’s latest missile test, adding that the ...
  • Bank wallets growing faster than e-wallets
    In the  bank  versus  e-wallets  sweepstakes,  lenders  have now gained lost ground. As of ...
  • Reliance Jio to offer sharp tariff discounts for customers signing up by March-end
    Reliance Industries' Jio unit will charge a tariff for its services from April, but will offer ...

Random Posts

  • Latest Fingerprint scanning is coming to Chromebooks
    Latest Fingerprint scanning is coming to Chromebooks
    22.02.2017 - 0 Comments
    Later this year, Chromebook owners with the appropriate hardware may be able to unlock their laptops with…
  • Samsung 'Galaxy X' foldable phone could leave the labs this year
    Samsung 'Galaxy X' foldable phone could leave the labs this year
    16.03.2017 - 0 Comments
    A foldaway phone that can open up into a device the size of a tablet... what's not to…
  • 3 Simple Ways To Make Overnight Coconut Oil Hair Masks
    3 Simple Ways To Make Overnight Coconut Oil Hair Masks
    28.03.2016 - 2 Comments
    Do you find your hair to be rough and dry? Have you always wanted to have smooth and healthy hair? Then…
  • Now LeEco may soon come up with Next Gen 'Smart TVs'
    Now LeEco may soon come up with Next Gen 'Smart TVs'
    04.03.2017 - 0 Comments
    Chinese internet and technology conglomerate LeEco that launched Super3 X Series TVs last…
  • How to Listen Podcasts at Faster and Slower Speeds
    How to Listen Podcasts at Faster and Slower Speeds
    12.03.2017 - 0 Comments
    We all have our favorite podcasts, but we don’t always have time to listen to them. You can however,…

Labels

Android Apk Files Android Apps Android Games Apps Apk Files Apps Hack Tricks Entertainment Free Internet Freecharge Gadgets Games Apk Files How To's Laptops Guide Mobiles Reviews Technology Viral's android zone free recharge

Entertainment

Tricks

Popular Posts

  • Teen Patti Offer 2018: Refer and Earn Flipkart Vouchers Free
    Teen Patti Offer 2018: Refer and Earn Flipkart Vouchers Free
    Teen Patti Refer & ...
  • Steam Now Supports PS4's DualShock 4 Controller
    HIGHLIGHTS ...
  • Lenovo Yoga Book launched in India at Rs 49,990: First Impressions
    Lenovo  has ...
  • This $15 stand turns your Apple Watch into a mini Macintosh
    For all those  ...
  • Grow Hair Faster: How to Make Hair Grow Faster Naturally
    Every woman wants ...
  • MobiKwik - Update E-KYC & Get Rs. 100 Supercash
    MobiKwik - Update E-KYC & Get Rs. 100 Supercash
    Mobikwik - Update ...
  • Fitbit Flex 2017 review
    Fitbit PROS ...

Random Posts

  •  Hotspot Shield Free Download of the day
    Hotspot Shield Free Download of the day
    10.03.2017 - 0 Comments
    Hotspot Shield Free You’re in a coffee shop or a takeaway, and you’re connecting to the wireless…
  • EU Fines Sony, Panasonic, and Sanyo Over Battery Cartel
    EU Fines Sony, Panasonic, and Sanyo Over Battery Cartel
    16.12.2016 - 0 Comments
    The European Union's anti-trust watchdog has fined Sony, Panasonic and Sanyo for price fixing in…
  • Get more Edge extensions by installing beta versions
    Get more Edge extensions by installing beta versions
    12.02.2017 - 0 Comments
    Microsoft is making a really weird choice with Edge extensions right now. The company is…
  • Battling Boredom with BoxOff
    Battling Boredom with BoxOff
    18.12.2016 - 0 Comments
    Another game developed Steven Meyer, BoxOff holds a prominent place among his collection of puzzle games…
  • PhonePe - Get 25% Cashback on 2nd & 3rd Recharge
    PhonePe - Get 25% Cashback on 2nd & 3rd Recharge
    17.02.2018 - 0 Comments
    PhonePe - Get 25% Cashback on 2nd and 3rd mobile numbers (prepaid recharges) recharged in February on…

Most Popular

  • Teen Patti Offer 2018: Refer and Earn Flipkart Vouchers Free
    Teen Patti Offer 2018: Refer and Earn Flipkart Vouchers Free
    Teen Patti Refer & ...
  • SAMSUNG GALAXY J7 (2016) REVIEWS
    SAMSUNG GALAXY J7 (2016) REVIEWS
    SAMSUNG GALAXY J ...
  • Top 5 Best SmartPhones under 7000 Rs (March 2017)
    Looking for the ...
  • Apple, IBM, Cisco are huge because of Indians, do not deny them H-1B visa: RBI Governor Urjit Patel
    ...
  • SAMSUNG GALAXY J7 (2016) Specifications
    SAMSUNG GALAXY J ...
  • BlackBerry Teases Marshmallow Beta Testing for Priv by Next Week
    Blackberry ...
  • LG Q6 Review
    LG Q6 Review
    2017 is ...

Contact Form

Name

Email *

Message *

Offers Zone

Created By Android Century Distributed by Android Century
  • Home
  • About us
  • Contact us
  • Privacy policy
  • Terms of use
  • Advertise here
Subscribe Via Email Subscribe To Android Century By Email And Get Free Updates. ;-)


Your email address is safe with us!