Looking for the vulnerability index of Invicti's legacy products?
Moodle Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2017-2645) - Vulnerability Database

Moodle Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2017-2645)

Description

In Moodle 3.x, XSS can occur via attachments to evidence of prior learning.

References