Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-m2f7-57gp-v34q

Опубликовано: 13 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Moodle 2.8.x before 2.8.6 does not consider the tool/monitor:subscribe capability before entering subscriptions to site-wide event-monitor rules, which allows remote authenticated users to obtain sensitive information via a subscription request.

Moodle 2.8.x before 2.8.6 does not consider the tool/monitor:subscribe capability before entering subscriptions to site-wide event-monitor rules, which allows remote authenticated users to obtain sensitive information via a subscription request.

EPSS

Процентиль: 53%
0.00306
Низкий

Связанные уязвимости

ubuntu
около 10 лет назад

Moodle 2.8.x before 2.8.6 does not consider the tool/monitor:subscribe capability before entering subscriptions to site-wide event-monitor rules, which allows remote authenticated users to obtain sensitive information via a subscription request.

nvd
около 10 лет назад

Moodle 2.8.x before 2.8.6 does not consider the tool/monitor:subscribe capability before entering subscriptions to site-wide event-monitor rules, which allows remote authenticated users to obtain sensitive information via a subscription request.

debian
около 10 лет назад

Moodle 2.8.x before 2.8.6 does not consider the tool/monitor:subscribe ...

fstec
около 10 лет назад

Уязвимость системы управления обучением Мoodle, позволяющая нарушителю получить доступ к защищаемой информации

EPSS

Процентиль: 53%
0.00306
Низкий