CVE-2025-3642

A flaw was found in Moodle. A remote code execution risk was identified in the Moodle LMS EQUELLA repository. By default, this was only available to teachers and managers on sites with the EQUELLA repository enabled.
Configurations

No configuration.

History

29 Apr 2025, 13:52

Type Values Removed Values Added
Summary
  • (es) Se detectó una falla en Moodle. Se identificó un riesgo de ejecución remota de código en el repositorio EQUELLA de Moodle LMS. Por defecto, esta opción solo estaba disponible para profesores y administradores en sitios con el repositorio EQUELLA habilitado.

25 Apr 2025, 15:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-04-25 15:15

Updated : 2025-04-29 13:52


NVD link : CVE-2025-3642

Mitre link : CVE-2025-3642

CVE.ORG link : CVE-2025-3642


JSON object : View

Products Affected

No product.

CWE
CWE-94

Improper Control of Generation of Code ('Code Injection')