Description
The vulnerability was found in Moodle, occurs due to input validation error when importing lesson questions. This insufficient path checks results in arbitrary file read risk. This vulnerability allows a remote attacker to perform directory traversal attacks. The capability to access this feature is only available to teachers, managers and admins by default.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-6384 | The vulnerability was found in Moodle, occurs due to input validation error when importing lesson questions. This insufficient path checks results in arbitrary file read risk. This vulnerability allows a remote attacker to perform directory traversal attacks. The capability to access this feature is only available to teachers, managers and admins by default. |
Github GHSA |
GHSA-pgm5-cr62-prxq | Moodle Arbitrary file read when importing lesson questions |
References
History
No history.
Status: PUBLISHED
Assigner: fedora
Published:
Updated: 2024-08-03T09:36:44.416Z
Reserved: 2022-07-12T00:00:00.000Z
Link: CVE-2022-35650
No data.
Status : Modified
Published: 2022-07-25T16:15:08.350
Modified: 2024-11-21T07:11:26.177
Link: CVE-2022-35650
No data.
OpenCVE Enrichment
No data.
EUVD
Github GHSA