[NEU] [hoch] Microsoft Office 365 (Moodle Plugin): Schwachstelle ermöglicht Umgehen von Sicherheitsvorkehrungen
BSI warns of a high-severity flaw in the Moodle Office 365 plugin that lets unauthenticated attackers impersonate users and gain admin access — a serious risk for education and corporate-training platforms with Microsoft integrations.
Summary written by editorial AI · Source link below
Ein entfernter, anonymer Angreifer kann eine Schwachstelle in Microsoft Office 365 (Moodle Plugin) ausnutzen, um Sicherheitsvorkehrungen zu umgehen, Benutzer zu imitieren und sich so erweiterte Berechtigungen, einschließlich Administratorzugriff, zu verschaffen.
Editorial Analysis
Many European universities and corporate academies rely on Moodle with Office 365 integration; anonymous admin takeover threatens student and employee data.
Immediately patch or disable the Moodle Office 365 plugin and audit admin accounts for signs of compromise.
A critical flaw in a widely-used educational platform plugin allows anonymous admin takeover — patch urgently to protect student and employee data.
Forward-looking interpretation drafted by editorial AI under human review — not a reproduction of the source. See methodology.
External link — opens at CERT-Bund (BSI) in a new tab.
More from the Vulnerabilities Desk
- ⚡ Weekly Recap: WordPress RCE, SonicWall 0-Days, AI Service Attacks, SharePoint 0-Day and More20 Jul
- Mythos Didn't Break Your Security Program. Your Exposure Window Could.20 Jul
- [NEU] [hoch] Extreme Networks ExtremeXOS: Mehrere Schwachstellen20 Jul
- [NEU] [hoch] Grafana: Schwachstelle ermöglicht Manipulation von Dateien20 Jul
- [NEU] [hoch] IBM Langflow Desktop OSS: Mehrere Schwachstellen20 Jul