AI Score
Confidence
Low
EPSS
Percentile
36.5%
In Moodle 2.x and 3.x, web service tokens are not invalidated when the user password is changed or forced to be changed.
www.securityfocus.com/bid/93174
github.com/moodle/moodle
moodle.org/mod/forum/discuss.php?d=339631
nvd.nist.gov/vuln/detail/CVE-2016-7038