Users' enrollment capabilities were not being sufficiently checked in Moodle when they are restored into an existing course. This could lead to them unenrolling users without having permission to do so. Versions affected: 3.5 to 3.5.14, 3.7 to 3.7.8, 3.8 to 3.8.5, 3.9 to 3.9.2 and earlier unsupported versions. Fixed in 3.9.3, 3.8.6, 3.7.9, 3.5.15, and 3.10.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: redhat
Published: 2020-11-19T16:05:37
Updated: 2024-08-04T15:40:36.632Z
Reserved: 2020-09-16T00:00:00
Link: CVE-2020-25698
Vulnrichment
No data.
NVD
Status : Modified
Published: 2020-11-19T17:15:12.560
Modified: 2024-11-21T05:18:30.390
Link: CVE-2020-25698
Redhat
No data.