Описание
Moodle has user information visibility control issues in gradebook reports
A flaw was found in moodle. Some hidden user profile fields are visible in gradebook reports, which could result in users without the "view hidden user fields" capability having access to the information.
Пакеты
moodle/moodle
>= 4.4.0, < 4.4.2
4.4.2
moodle/moodle
>= 4.3.0, < 4.3.6
4.3.6
moodle/moodle
>= 4.2.0, < 4.2.9
4.2.9
moodle/moodle
< 4.1.12
4.1.12
EPSS
2.7 Low
CVSS4
5.3 Medium
CVSS3
CVE ID
Дефекты
Связанные уязвимости
A flaw was found in moodle. Some hidden user profile fields are visible in gradebook reports, which could result in users without the "view hidden user fields" capability having access to the information.
A flaw was found in moodle. Some hidden user profile fields are visible in gradebook reports, which could result in users without the "view hidden user fields" capability having access to the information.
A flaw was found in moodle. Some hidden user profile fields are visibl ...
Уязвимость виртуальной обучающей среды Moodle, связанная с хранением критичной информации в открытом виде, позволяющая нарушителю получить доступ конфиденциальной информации
EPSS
2.7 Low
CVSS4
5.3 Medium
CVSS3