Логотип exploitDog
bind:CVE-2025-67848
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-67848

Количество 4

Количество 4

ubuntu логотип

CVE-2025-67848

6 дней назад

A flaw was found in Moodle. This authentication bypass vulnerability allows suspended users to authenticate through the Learning Tools Interoperability (LTI) Provider. The issue arises from the LTI authentication handlers failing to enforce the user's suspension status, enabling unauthorized access to the system. This can lead to information disclosure or other unauthorized actions by users who should be restricted.

CVSS3: 8.1
EPSS: Низкий
nvd логотип

CVE-2025-67848

6 дней назад

A flaw was found in Moodle. This authentication bypass vulnerability allows suspended users to authenticate through the Learning Tools Interoperability (LTI) Provider. The issue arises from the LTI authentication handlers failing to enforce the user's suspension status, enabling unauthorized access to the system. This can lead to information disclosure or other unauthorized actions by users who should be restricted.

CVSS3: 8.1
EPSS: Низкий
debian логотип

CVE-2025-67848

6 дней назад

A flaw was found in Moodle. This authentication bypass vulnerability a ...

CVSS3: 8.1
EPSS: Низкий
github логотип

GHSA-j5jv-w5cw-j9ff

6 дней назад

Moodle authentication bypass vulnerability

CVSS3: 8.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2025-67848

A flaw was found in Moodle. This authentication bypass vulnerability allows suspended users to authenticate through the Learning Tools Interoperability (LTI) Provider. The issue arises from the LTI authentication handlers failing to enforce the user's suspension status, enabling unauthorized access to the system. This can lead to information disclosure or other unauthorized actions by users who should be restricted.

CVSS3: 8.1
0%
Низкий
6 дней назад
nvd логотип
CVE-2025-67848

A flaw was found in Moodle. This authentication bypass vulnerability allows suspended users to authenticate through the Learning Tools Interoperability (LTI) Provider. The issue arises from the LTI authentication handlers failing to enforce the user's suspension status, enabling unauthorized access to the system. This can lead to information disclosure or other unauthorized actions by users who should be restricted.

CVSS3: 8.1
0%
Низкий
6 дней назад
debian логотип
CVE-2025-67848

A flaw was found in Moodle. This authentication bypass vulnerability a ...

CVSS3: 8.1
0%
Низкий
6 дней назад
github логотип
GHSA-j5jv-w5cw-j9ff

Moodle authentication bypass vulnerability

CVSS3: 8.1
0%
Низкий
6 дней назад

Уязвимостей на страницу