CVE-2022-0983
8.8
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Exploitability: 2.8 / Impact: 5.9
Source: NVD
Description
An SQL injection risk was identified in Badges code relating to configuring criteria. Access to the relevant capability was limited to teachers and managers by default.
Affected (6)
Products: Moodle: Moodle · Fedoraproject: Fedora, Extra Packages For Enterprise Linux
Configuration B
| Vulnerable Software | Affected Versions |
|---|---|
| Version 35 |
Configuration C
| Vulnerable Software | Affected Versions |
|---|---|
| Version 7.0 |
References (4)
Source: secalert@redhat.com
Issue TrackingThird Party Advisory
Source: secalert@redhat.com
Source: af854a3a-2127-422b-91ae-364da2661108
Issue TrackingThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Timeline
No history available yet.