The user editing form in Moodle 3.0 through 3.0.3, 2.9 through 2.9.5, 2.8 through 2.8.11, 2.7 through 2.7.13, and earlier allows remote authenticated users to edit profile fields locked by the administrator.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-3929 | The user editing form in Moodle 3.0 through 3.0.3, 2.9 through 2.9.5, 2.8 through 2.8.11, 2.7 through 2.7.13, and earlier allows remote authenticated users to edit profile fields locked by the administrator. |
Github GHSA |
GHSA-g96h-wvrm-c2ww | Moodle Improper Access Control |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2024-08-06T00:03:34.416Z
Reserved: 2016-03-30T00:00:00
Link: CVE-2016-3729
No data.
Status : Deferred
Published: 2017-04-20T21:59:00.717
Modified: 2025-04-20T01:37:25.860
Link: CVE-2016-3729
No data.
OpenCVE Enrichment
No data.
EUVD
Github GHSA