Description
SQL injection vulnerability in the SCORM module in Moodle 1.8 before 1.8.11 and 1.9 before 1.9.7 allows remote authenticated users to execute arbitrary SQL commands via vectors related to an "escaping issue when processing AICC CRS file (Course_Title)."
Remediation
References
Related Vulnerabilities
Envoy Proxy Uncontrolled Resource Consumption Vulnerability (CVE-2020-8663)
Joomla Exposure of Resource to Wrong Sphere Vulnerability (CVE-2020-10238)
WordPress Plugin WooCommerce Stock Manager Security Bypass (1.0.7)
WordPress Plugin bib2html Cross-Site Scripting (0.9.3)
WordPress Plugin BulletProof Security Cross-Site Scripting (.53.3)