A flaw was found in Moodle in versions 3.11 to 3.11.4, 3.10 to 3.10.8, 3.9 to 3.9.11 and earlier unsupported versions. Insufficient capability checks could lead to users accessing their grade report for courses where they did not have the required gradereport/user:view capability.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-0540 | A flaw was found in Moodle in versions 3.11 to 3.11.4, 3.10 to 3.10.8, 3.9 to 3.9.11 and earlier unsupported versions. Insufficient capability checks could lead to users accessing their grade report for courses where they did not have the required gradereport/user:view capability. |
Github GHSA |
GHSA-93pj-4p65-qmr9 | Insufficient user authorization in Moodle |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Status: PUBLISHED
Assigner: fedora
Published:
Updated: 2024-08-02T23:25:40.135Z
Reserved: 2022-01-21T00:00:00
Link: CVE-2022-0334
No data.
Status : Modified
Published: 2022-01-25T20:15:08.850
Modified: 2024-11-21T06:38:24.030
Link: CVE-2022-0334
No data.
OpenCVE Enrichment
No data.
EUVD
Github GHSA