Back

CVE-2004-2232

SQL injection vulnerability in sql.php in the Glossary module in Moodle 1.4.1 and earlier allows remote attackers to modify SQL statements.

Published: Dec 31, 2004 Modified: Jun 16, 2026

CVSS Metrics

Affected Products (9)

Vendor Product Version
moodle moodle 1.1.1
moodle moodle 1.2.0
moodle moodle 1.2.1
moodle moodle 1.3.0
moodle moodle 1.3.1
moodle moodle 1.3.2
moodle moodle 1.3.3
moodle moodle 1.3.4
moodle moodle 1.4.1

GitHub Security Advisory GHSA-853r-xfvj-j429

SQL injection vulnerability in sql.php in the Glossary module in Moodle 1.4.1 and earlier allows...

Risk Scores

CVSS Score 7.5 / 10
EPSS Score 1.37%

Top 30% most likely to be exploited

Threat Score 30.4 / 100

Data Sources

NVD EPSS GitHub