A flaw was found in Moodle. Dynamic tables did not enforce capability checks, which resulted in users having the ability to retrieve information they did not have permission to access.
References
| Link | Resource |
|---|---|
| https://bugzilla.redhat.com/show_bug.cgi?id=2309941 | Issue Tracking |
Configurations
Configuration 1 (hide)
|
History
02 Jun 2025, 15:33
| Type | Values Removed | Values Added |
|---|---|---|
| CWE | CWE-862 | |
| References | () https://bugzilla.redhat.com/show_bug.cgi?id=2309941 - Issue Tracking | |
| CPE | cpe:2.3:a:moodle:moodle:*:*:*:*:*:*:*:* | |
| First Time |
Moodle moodle
Moodle |
20 Nov 2024, 20:35
| Type | Values Removed | Values Added |
|---|---|---|
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 6.5 |
| Summary |
|
20 Nov 2024, 11:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2024-11-20 11:15
Updated : 2025-06-02 15:33
NVD link : CVE-2024-45689
Mitre link : CVE-2024-45689
CVE.ORG link : CVE-2024-45689
JSON object : View
Products Affected
moodle
- moodle
CWE
CWE-862
Missing Authorization
