Description
A unique key should be generated for a user's QR login key and their auto-login key, so the same key cannot be used interchangeably between the two.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-2156 | A unique key should be generated for a user's QR login key and their auto-login key, so the same key cannot be used interchangeably between the two. |
Github GHSA |
GHSA-r82w-3phg-qvr4 | Moodle uses the same key for QR login and auto-login |
References
History
Thu, 07 Aug 2025 17:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Fedoraproject
Fedoraproject fedora Moodle Moodle moodle |
|
| CPEs | cpe:2.3:a:moodle:moodle:*:*:*:*:*:*:*:* cpe:2.3:a:moodle:moodle:4.4.0:*:*:*:*:*:*:* cpe:2.3:o:fedoraproject:fedora:39:*:*:*:*:*:*:* cpe:2.3:o:fedoraproject:fedora:40:*:*:*:*:*:*:* |
|
| Vendors & Products |
Fedoraproject
Fedoraproject fedora Moodle Moodle moodle |
Wed, 04 Dec 2024 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-326 | |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: fedora
Published:
Updated: 2025-02-13T17:53:03.298Z
Reserved: 2024-06-12T14:08:44.048Z
Link: CVE-2024-38277
Updated: 2024-08-02T04:04:25.111Z
Status : Analyzed
Published: 2024-06-18T20:15:14.210
Modified: 2025-08-07T17:24:28.743
Link: CVE-2024-38277
No data.
OpenCVE Enrichment
No data.
EUVD
Github GHSA