Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2025-3625

Опубликовано: 25 апр. 2025
Источник: nvd
CVSS3: 7.1
EPSS Низкий

Описание

A security vulnerability was discovered in Moodle that can allow hackers to gain access to sensitive information about students and prevent them from logging into their accounts, even after they had completed two-factor authentication (2FA).

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:moodle:moodle:*:*:*:*:*:*:*:*
Версия от 4.3.0 (включая) до 4.3.12 (исключая)
cpe:2.3:a:moodle:moodle:*:*:*:*:*:*:*:*
Версия от 4.4.0 (включая) до 4.4.8 (исключая)
cpe:2.3:a:moodle:moodle:*:*:*:*:*:*:*:*
Версия от 4.5.0 (включая) до 4.5.4 (исключая)

EPSS

Процентиль: 28%
0.00356
Низкий

7.1 High

CVSS3

Дефекты

CWE-639

Связанные уязвимости

CVSS3: 7.1
ubuntu
больше 1 года назад

A security vulnerability was discovered in Moodle that can allow hackers to gain access to sensitive information about students and prevent them from logging into their accounts, even after they had completed two-factor authentication (2FA).

CVSS3: 7.1
debian
больше 1 года назад

A security vulnerability was discovered in Moodle that can allow hacke ...

CVSS3: 7.1
github
больше 1 года назад

A security vulnerability was discovered in Moodle that can allow hackers to gain access to sensitive information about students and prevent them from logging into their accounts, even after they had completed two-factor authentication (2FA).

CVSS3: 7.1
fstec
больше 1 года назад

Уязвимость компонента Multi-Factor Authentication виртуальной обучающей среды Moodle, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 7.5
redos
12 месяцев назад

Множественные уязвимости moodle

EPSS

Процентиль: 28%
0.00356
Низкий

7.1 High

CVSS3

Дефекты

CWE-639