Описание
When creating a user account, it was possible to verify the account without having access to the verification email link/secret in moodle before 3.10.2, 3.9.5, 3.8.8, 3.5.17.
| Релиз | Статус | Примечание |
|---|---|---|
| bionic | ignored | end of standard support, was needs-triage |
| devel | DNE | |
| esm-apps-legacy/xenial | needs-triage | |
| esm-apps/bionic | needs-triage | |
| esm-apps/xenial | ignored | end of ESM support, was needs-triage |
| esm-infra-legacy/trusty | DNE | |
| esm-infra/focal | DNE | |
| focal | DNE | |
| groovy | DNE | |
| hirsute | DNE |
Показывать по
10
EPSS
Процентиль: 67%
0.01266
Низкий
5 Medium
CVSS2
5.3 Medium
CVSS3
Связанные уязвимости
CVSS3: 5.3
nvd
больше 5 лет назад
When creating a user account, it was possible to verify the account without having access to the verification email link/secret in moodle before 3.10.2, 3.9.5, 3.8.8, 3.5.17.
CVSS3: 5.3
debian
больше 5 лет назад
When creating a user account, it was possible to verify the account wi ...
CVSS3: 5.3
github
около 4 лет назад
Moodle Bypass email verification secret when confirming account registration
EPSS
Процентиль: 67%
0.01266
Низкий
5 Medium
CVSS2
5.3 Medium
CVSS3