Описание
Moodle 1.9.x before 1.9.12 and 2.0.x before 2.0.3 does not properly implement associations between teachers and groups, which allows remote authenticated users to read quiz reports of arbitrary students by leveraging the teacher role.
Релиз | Статус | Примечание |
---|---|---|
devel | not-affected | |
hardy | ignored | end of life |
lucid | ignored | end of life |
maverick | ignored | end of life |
natty | ignored | end of life |
oneiric | not-affected | 1.9.9.dfsg2-3 |
precise | not-affected | |
quantal | not-affected | |
raring | not-affected | |
saucy | not-affected |
Показывать по
Ссылки на источники
EPSS
4 Medium
CVSS2
Связанные уязвимости
Moodle 1.9.x before 1.9.12 and 2.0.x before 2.0.3 does not properly implement associations between teachers and groups, which allows remote authenticated users to read quiz reports of arbitrary students by leveraging the teacher role.
Moodle 1.9.x before 1.9.12 and 2.0.x before 2.0.3 does not properly im ...
Moodle 1.9.x before 1.9.12 and 2.0.x before 2.0.3 does not properly implement associations between teachers and groups, which allows remote authenticated users to read quiz reports of arbitrary students by leveraging the teacher role.
EPSS
4 Medium
CVSS2