Lucene search

K
cvelistRedhatCVELIST:CVE-2021-32477
HistoryMar 11, 2022 - 5:54 p.m.

CVE-2021-32477

2022-03-1117:54:22
CWE-200
redhat
www.cve.org
5
cve-2021-32477
user access restriction
profile page

AI Score

4.8

Confidence

High

EPSS

0.001

Percentile

22.7%

The last time a user accessed the mobile app is displayed on their profile page, but should be restricted to users with the relevant capability (site administrators by default). Moodle versions 3.10 to 3.10.3 are affected.

CNA Affected

[
  {
    "product": "moodle",
    "vendor": "n/a",
    "versions": [
      {
        "status": "affected",
        "version": "3.10 to 3.10.3"
      }
    ]
  }
]

AI Score

4.8

Confidence

High

EPSS

0.001

Percentile

22.7%