Description
A flaw was found in moodle. Some hidden user profile fields are visible in gradebook reports, which could result in users without the "view hidden user fields" capability having access to the information.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-3232 | A flaw was found in moodle. Some hidden user profile fields are visible in gradebook reports, which could result in users without the "view hidden user fields" capability having access to the information. |
Github GHSA |
GHSA-c767-4whh-v7rw | Moodle has user information visibility control issues in gradebook reports |
References
History
Tue, 12 Nov 2024 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Moodle
Moodle moodle |
|
| Weaknesses | CWE-312 | |
| CPEs | cpe:2.3:a:moodle:moodle:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Moodle
Moodle moodle |
|
| Metrics |
ssvc
|
Mon, 11 Nov 2024 12:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A flaw was found in moodle. Some hidden user profile fields are visible in gradebook reports, which could result in users without the "view hidden user fields" capability having access to the information. | |
| Title | Moodle: user information visibility control issues in gradebook reports | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: fedora
Published:
Updated: 2024-11-12T15:16:37.165Z
Reserved: 2024-08-13T07:15:00.598Z
Link: CVE-2024-43429
Updated: 2024-11-12T15:16:31.369Z
Status : Analyzed
Published: 2024-11-11T13:15:03.880
Modified: 2025-05-01T16:07:22.490
Link: CVE-2024-43429
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Github GHSA