CVE-2022-0984
4.3
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N
Exploitability: 2.8 / Impact: 1.4
Source: NVD
Description
Users with the capability to configure badge criteria (teachers and managers by default) were able to configure course badges with profile field criteria, which should only be available for site badges.
Affected (7)
Configuration B
| Vulnerable Software | Affected Versions |
|---|---|
| Version 34 |
Configuration C
| Vulnerable Software | Affected Versions |
|---|---|
| Version 7.0 |
References (2)
Source: secalert@redhat.com
Issue TrackingThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Issue TrackingThird Party Advisory
Timeline
No history available yet.