A flaw was found in the course overview output function where user access permissions were not fully enforced. This could allow unauthorized users to view information about courses they should not have access to, potentially exposing limited course details.
References
| Link | Resource |
|---|---|
| https://access.redhat.com/security/cve/CVE-2025-62393 | Third Party Advisory |
| https://bugzilla.redhat.com/show_bug.cgi?id=2404426 | Issue Tracking Third Party Advisory |
| https://moodle.org/mod/forum/discuss.php?d=470381 | Issue Tracking Vendor Advisory |
Configurations
History
14 Nov 2025, 19:39
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://access.redhat.com/security/cve/CVE-2025-62393 - Third Party Advisory | |
| References | () https://bugzilla.redhat.com/show_bug.cgi?id=2404426 - Issue Tracking, Third Party Advisory | |
| References | () https://moodle.org/mod/forum/discuss.php?d=470381 - Issue Tracking, Vendor Advisory | |
| CPE | cpe:2.3:a:moodle:moodle:*:*:*:*:*:*:*:* | |
| First Time |
Moodle
Moodle moodle |
23 Oct 2025, 13:15
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
23 Oct 2025, 12:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2025-10-23 12:15
Updated : 2025-11-14 19:39
NVD link : CVE-2025-62393
Mitre link : CVE-2025-62393
CVE.ORG link : CVE-2025-62393
JSON object : View
Products Affected
moodle
- moodle
CWE
CWE-284
Improper Access Control
