CVE-2024-43435

MEDIUM5.3EPSS 0.53%

Moodle has insufficient capability checks

發布日:2024/11/11修改日:2025/5/2
也稱為:GHSA-4gq2-x5w4-7hp8BIT-moodle-2024-43435

描述

A flaw was found in moodle. Insufficient capability checks make it possible for users with access to restore glossaries in courses to restore them into the global site glossary.

受影響套件(2)

CVSS 分數

來源版本嚴重程度向量
osvCVSS 4.0CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N/E:U
osvCVSS 3.1MEDIUM5.3CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N

參考連結(5)