A vulnerability was found in Moodle. Users with access to delete audiences from reports could delete audiences from other reports that they do not have permission to delete from.
Metrics
Affected Vendors & Products
References
| Link | Providers |
|---|---|
| https://bugzilla.redhat.com/show_bug.cgi?id=2318820 |
|
History
Wed, 20 Nov 2024 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Moodle
Moodle moodle |
|
| CPEs | cpe:2.3:a:moodle:moodle:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Moodle
Moodle moodle |
Mon, 18 Nov 2024 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
cvssV3_1
|
Mon, 18 Nov 2024 11:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability was found in Moodle. Users with access to delete audiences from reports could delete audiences from other reports that they do not have permission to delete from. | |
| Title | Moodle: some users can delete audiences of other reports | |
| Weaknesses | CWE-862 | |
| References |
|
Status: PUBLISHED
Assigner: redhat
Published: 2024-11-18T11:14:26.903Z
Updated: 2024-11-18T11:14:26.903Z
Reserved: 2024-10-09T12:15:07.577Z
Link: CVE-2024-48898
Updated: 2024-11-18T14:56:06.172Z
Status : Analyzed
Published: 2024-11-18T12:15:18.363
Modified: 2024-11-20T14:46:16.237
Link: CVE-2024-48898
No data.