Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2021-20283

Опубликовано: 15 мар. 2021
Источник: debian
EPSS Низкий

Описание

The web service responsible for fetching other users' enrolled courses did not validate that the requesting user had permission to view that information in each course in moodle before 3.10.2, 3.9.5, 3.8.8, 3.5.17.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
moodleremovedpackage

EPSS

Процентиль: 50%
0.00266
Низкий

Связанные уязвимости

CVSS3: 4.3
ubuntu
больше 4 лет назад

The web service responsible for fetching other users' enrolled courses did not validate that the requesting user had permission to view that information in each course in moodle before 3.10.2, 3.9.5, 3.8.8, 3.5.17.

CVSS3: 4.3
nvd
больше 4 лет назад

The web service responsible for fetching other users' enrolled courses did not validate that the requesting user had permission to view that information in each course in moodle before 3.10.2, 3.9.5, 3.8.8, 3.5.17.

CVSS3: 4.3
github
больше 3 лет назад

Missing permission check in Moodle

EPSS

Процентиль: 50%
0.00266
Низкий