Moodle News Articles

Recent news articles refferecing the vendors vulnerabilities.

RedTeam Pentesting GmbH - Moodle: Remote Code Execution via Calculated Questions

Attackers with the permission to create or modify questions in Moodle courses are able to craft malicious inputs for calculated questions, which can be abused to execute arbitrary commands on the underlying system.