CVE Database
/

CVE-2023-28336

Back to search

CVE-2023-28336

Published: Mar 23, 2023

Modified: Aug 2, 2024

PUBLISHED

Description

Insufficient filtering of grade report history made it possible for teachers to access the names of users they could not otherwise access.

VendorProductVersions

Unknown

moodle

affected
4.1.0 - < 4.1.2
affected
4.0.0 - < 4.0.7
affected
3.11.0 - < 3.11.13
affected
0 - < 3.9.20

Weaknesses (CWE)

References

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now