Moodle Improper Neutralization of Special Elements in Output Used by a Downstream Component (Injection) Vulnerability - CVE-2016-5013 - Vulnerability Database

Moodle Improper Neutralization of Special Elements in Output Used by a Downstream Component (Injection) Vulnerability - CVE-2016-5013

Medium
Reference: CVE-2016-5013
Title: Moodle Improper Neutralization of Special Elements in Output Used by a Downstream Component (Injection) Vulnerability
Overview:

In Moodle 2.x and 3.x text injection can occur in email headers potentially leading to outbound spam.