Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-m7pf-2qjx-4mqr

Опубликовано: 20 апр. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 6.5

Описание

An Access Control vulnerability exists in Desire2Learn/D2L Learning Management System (LMS) 20.21.7 via the quizzing feature, which allows a remote malicious user to disable the Disable right click control.

An Access Control vulnerability exists in Desire2Learn/D2L Learning Management System (LMS) 20.21.7 via the quizzing feature, which allows a remote malicious user to disable the Disable right click control.

EPSS

Процентиль: 89%
0.0485
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-668

Связанные уязвимости

CVSS3: 6.5
nvd
почти 4 года назад

A bypass exists for Desire2Learn/D2L Brightspace’s “Disable Right Click” option in the quizzing feature, which allows a quiz-taker to access print and copy functionality via the browser’s right click menu even when “Disable Right Click” is enabled on the quiz.

EPSS

Процентиль: 89%
0.0485
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-668