CVEs (4)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Blackboard 1Blackboard Academic Suite Apr 23, 2026 Jul 31, 2008 N/A· v4 N/A· v3 4.3 MEDIUM· v2 Multiple cross-site request forgery (CSRF) vulnerabilities in Blackboard Academic Suite 8.0.260.7 allow remote attackers to hijack the authentication of student users for requests that change configuration and enrollment...Show more |
1Blackboard 1Blackboard Academic Suite Apr 23, 2026 Apr 18, 2008 N/A· v4 N/A· v3 6.8 MEDIUM· v2 The server in Blackboard Academic Suite 7.x stores MD5 password hashes that are provided directly by clients, which makes it easier for remote attackers to access accounts via a modified client that skips the javascript/...Show more |
1Blackboard 1Blackboard Academic Suite Apr 16, 2026 Jul 28, 2006 N/A· v4 N/A· v3 6.0 MEDIUM· v2 Cross-site scripting (XSS) vulnerability in Blackboard Academic Suite 6.2.3.23 allows remote authenticated users to inject arbitrary HTML or web script by bypassing client-side validation through disabling JavaScript whe...Show more |
1Blackboard 2Blackboard Blackboard Academic SuiteApr 16, 2026 Feb 1, 2006 N/A· v4 N/A· v3 4.3 MEDIUM· v2 Blackboard Academic Suite 6.0 and earlier does not properly clear session information when de-authenticating a user who is idle, which allows subsequent users to log in as the previous user and gain privileges. NOTE: th...Show more |