CVE-2024-48898

MEDIUM6.5EPSS 0.23%

moodle: Some users can delete audiences of other reports

發布日:2024/11/18修改日:2024/11/21
也稱為:GHSA-fjq9-452g-jg3qBIT-moodle-2024-48898

描述

A vulnerability was found in Moodle. Users with access to delete audiences from reports could delete audiences from other reports that they do not have permission to delete from.

受影響套件(2)

CVSS 分數

來源版本嚴重程度向量
osvCVSS 3.1MEDIUM6.5CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N

參考連結(3)