← Back

CVE-2024-45689

nvd nist
Published: Nov 20, 2024Modified: Jun 17, 2026

JSON object

Loading...
6.5
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Exploitability: 2.8 / Impact: 3.6
Source: 134c704f-9b21-4f2e-91b3-4a467353bcc0 (Secondary)

Description

A flaw was found in Moodle. Dynamic tables did not enforce capability checks, which resulted in users having the ability to retrieve information they did not have permission to access.

Affected (4)

Products: Moodle: Moodle
1 product
Moodle
Configuration A
4 vulnerable
Vulnerable SoftwareAffected Versions
Moodle
Before 4.1.13
From 4.2.0 to 4.2.10
From 4.3.0 to 4.3.7
From 4.4.0 to 4.4.3

References (1)

Source: patrick@puiterwijk.org
Issue Tracking

Timeline

No history available yet.