Cross-site scripting (XSS) vulnerability in help.php in Moodle before 1.3 allows remote attackers to inject arbitrary HTML and web script via the text parameter.
| Software | From | Fixed in |
|---|---|---|
moodle / moodle
|
1.2.1 | 1.2.1.x |
moodle / moodle
|
1.1.1 | 1.1.1.x |
moodle / moodle
|
1.2.0 | 1.2.0.x |