Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-q5m8-g27f-797h

Опубликовано: 06 авг. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 4.3

Описание

In Moodle before 3.8.2, 3.7.5, 3.6.9 and 3.5.11, users viewing the grade history report without the 'access all groups' capability were not restricted to viewing grades of users within their own groups.

In Moodle before 3.8.2, 3.7.5, 3.6.9 and 3.5.11, users viewing the grade history report without the 'access all groups' capability were not restricted to viewing grades of users within their own groups.

EPSS

Процентиль: 51%
0.00274
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-732

Связанные уязвимости

CVSS3: 4.3
ubuntu
почти 3 года назад

In Moodle before 3.8.2, 3.7.5, 3.6.9 and 3.5.11, users viewing the grade history report without the 'access all groups' capability were not restricted to viewing grades of users within their own groups.

CVSS3: 4.3
nvd
почти 3 года назад

In Moodle before 3.8.2, 3.7.5, 3.6.9 and 3.5.11, users viewing the grade history report without the 'access all groups' capability were not restricted to viewing grades of users within their own groups.

CVSS3: 4.3
debian
почти 3 года назад

In Moodle before 3.8.2, 3.7.5, 3.6.9 and 3.5.11, users viewing the gra ...

EPSS

Процентиль: 51%
0.00274
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-732