Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2022-54955
HistoryMar 23, 2022 - 12:00 a.m.

Moodle Access Control Error Vulnerability (CNVD-2022-54955)

2022-03-2300:00:00
China National Vulnerability Database
www.cnvd.org.cn
11
moodle
e-learning software
access control
vulnerability
improper access restrictions
remote attacker
course badges
profile field criteria
restricted functionality

EPSS

0.001

Percentile

22.7%

Moodle is a free, open source e-learning software platform, also known as a course management system, learning management system, or virtual learning environment. an access control error vulnerability exists in Moodle, which stems from improper access restrictions. A remote attacker could use the vulnerability to configure course badges using the profile field criteria to access other restricted functionality.

EPSS

0.001

Percentile

22.7%