Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-q5m8-g27f-797h

Опубликовано: 06 авг. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 4.3

Описание

In Moodle before 3.8.2, 3.7.5, 3.6.9 and 3.5.11, users viewing the grade history report without the 'access all groups' capability were not restricted to viewing grades of users within their own groups.

In Moodle before 3.8.2, 3.7.5, 3.6.9 and 3.5.11, users viewing the grade history report without the 'access all groups' capability were not restricted to viewing grades of users within their own groups.

EPSS

Процентиль: 45%
0.0022
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-732

Связанные уязвимости

CVSS3: 4.3
ubuntu
около 3 лет назад

In Moodle before 3.8.2, 3.7.5, 3.6.9 and 3.5.11, users viewing the grade history report without the 'access all groups' capability were not restricted to viewing grades of users within their own groups.

CVSS3: 4.3
nvd
около 3 лет назад

In Moodle before 3.8.2, 3.7.5, 3.6.9 and 3.5.11, users viewing the grade history report without the 'access all groups' capability were not restricted to viewing grades of users within their own groups.

CVSS3: 4.3
debian
около 3 лет назад

In Moodle before 3.8.2, 3.7.5, 3.6.9 and 3.5.11, users viewing the gra ...

EPSS

Процентиль: 45%
0.0022
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-732