CVE-2022-30600

CRITICAL9.8EPSS 6.9%

Incorrect Calculation in moodle

Published: 5/19/2022Modified: 4/3/2025

Description

A flaw was found in moodle where logic used to count failed login attempts could result in the account lockout threshold being bypassed.

Affected packages (2)

CVSS scores

SourceVersionSeverityVector
osvCVSS 3.1CRITICAL9.8CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

References (12)