Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-966m-m549-2878

Опубликовано: 13 мая 2022
Источник: github
Github: Прошло ревью

Описание

Moodle is vulnerable to unauthorized new accounts creation

Moodle 1.8.x and 1.9.x before 1.9.8 can create new roles when restoring a course, which allows teachers to create new accounts even if they do not have the moodle/user:create capability.

Пакеты

Наименование

moodle/moodle

composer
Затронутые версииВерсия исправления

>= 1.8.0, < 1.8.12

1.8.12

Наименование

moodle/moodle

composer
Затронутые версииВерсия исправления

>= 1.9.0, < 1.9.8

1.9.8

EPSS

Процентиль: 51%
0.00277
Низкий

Дефекты

CWE-284

Связанные уязвимости

ubuntu
около 15 лет назад

Moodle 1.8.x and 1.9.x before 1.9.8 can create new roles when restoring a course, which allows teachers to create new accounts even if they do not have the moodle/user:create capability.

redhat
около 15 лет назад

Moodle 1.8.x and 1.9.x before 1.9.8 can create new roles when restoring a course, which allows teachers to create new accounts even if they do not have the moodle/user:create capability.

nvd
около 15 лет назад

Moodle 1.8.x and 1.9.x before 1.9.8 can create new roles when restoring a course, which allows teachers to create new accounts even if they do not have the moodle/user:create capability.

debian
около 15 лет назад

Moodle 1.8.x and 1.9.x before 1.9.8 can create new roles when restorin ...

EPSS

Процентиль: 51%
0.00277
Низкий

Дефекты

CWE-284