Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-qh8m-6g4p-33h3

Опубликовано: 13 мая 2022
Источник: github
Github: Прошло ревью
CVSS3: 8.1

Описание

Moodle Improper Authentication

A flaw was found in Moodle 3.4 to 3.4.1, and 3.3 to 3.3.4. If a user account using OAuth2 authentication method was once confirmed but later suspended, the user could still login to the site.

Пакеты

Наименование

moodle/moodle

composer
Затронутые версииВерсия исправления

>= 3.3, < 3.3.5

3.3.5

Наименование

moodle/moodle

composer
Затронутые версииВерсия исправления

>= 3.4, < 3.4.2

3.4.2

EPSS

Процентиль: 81%
0.0161
Низкий

8.1 High

CVSS3

Дефекты

CWE-287

Связанные уязвимости

CVSS3: 8.1
ubuntu
около 7 лет назад

A flaw was found in Moodle 3.4 to 3.4.1, and 3.3 to 3.3.4. If a user account using OAuth2 authentication method was once confirmed but later suspended, the user could still login to the site.

CVSS3: 8.1
nvd
около 7 лет назад

A flaw was found in Moodle 3.4 to 3.4.1, and 3.3 to 3.3.4. If a user account using OAuth2 authentication method was once confirmed but later suspended, the user could still login to the site.

CVSS3: 8.1
debian
около 7 лет назад

A flaw was found in Moodle 3.4 to 3.4.1, and 3.3 to 3.3.4. If a user a ...

EPSS

Процентиль: 81%
0.0161
Низкий

8.1 High

CVSS3

Дефекты

CWE-287