The user editing form in Moodle 3.0 through 3.0.3, 2.9 through 2.9.5, 2.8 through 2.8.11, 2.7 through 2.7.13, and earlier allows remote authenticated users to edit profile fields locked by the administrator.
Metrics
Affected Vendors & Products
Advisories
Source | ID | Title |
---|---|---|
![]() |
EUVD-2022-3929 | The user editing form in Moodle 3.0 through 3.0.3, 2.9 through 2.9.5, 2.8 through 2.8.11, 2.7 through 2.7.13, and earlier allows remote authenticated users to edit profile fields locked by the administrator. |
![]() |
GHSA-g96h-wvrm-c2ww | Moodle Improper Access Control |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.

Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2024-08-06T00:03:34.416Z
Reserved: 2016-03-30T00:00:00
Link: CVE-2016-3729

No data.

Status : Deferred
Published: 2017-04-20T21:59:00.717
Modified: 2025-04-20T01:37:25.860
Link: CVE-2016-3729

No data.

No data.