Описание
When creating a user account, it was possible to verify the account without having access to the verification email link/secret in moodle before 3.10.2, 3.9.5, 3.8.8, 3.5.17.
Релиз | Статус | Примечание |
---|---|---|
bionic | ignored | end of standard support, was needs-triage |
devel | DNE | |
esm-apps/bionic | needs-triage | |
esm-apps/xenial | needs-triage | |
esm-infra-legacy/trusty | DNE | |
esm-infra/focal | DNE | |
focal | DNE | |
groovy | DNE | |
hirsute | DNE | |
impish | DNE |
Показывать по
10
EPSS
Процентиль: 53%
0.00304
Низкий
5 Medium
CVSS2
5.3 Medium
CVSS3
Связанные уязвимости
CVSS3: 5.3
nvd
больше 4 лет назад
When creating a user account, it was possible to verify the account without having access to the verification email link/secret in moodle before 3.10.2, 3.9.5, 3.8.8, 3.5.17.
CVSS3: 5.3
debian
больше 4 лет назад
When creating a user account, it was possible to verify the account wi ...
CVSS3: 5.3
github
около 3 лет назад
Moodle Bypass email verification secret when confirming account registration
EPSS
Процентиль: 53%
0.00304
Низкий
5 Medium
CVSS2
5.3 Medium
CVSS3