CVE-2024-45689

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
20/11/2024
Last modified:
02/06/2025

Description

A flaw was found in Moodle. Dynamic tables did not enforce capability checks, which resulted in users having the ability to retrieve information they did not have permission to access.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:moodle:moodle:*:*:*:*:*:*:*:* 4.1.13 (excluding)
cpe:2.3:a:moodle:moodle:*:*:*:*:*:*:*:* 4.2.0 (including) 4.2.10 (excluding)
cpe:2.3:a:moodle:moodle:*:*:*:*:*:*:*:* 4.3.0 (including) 4.3.7 (excluding)
cpe:2.3:a:moodle:moodle:*:*:*:*:*:*:*:* 4.4.0 (including) 4.4.3 (excluding)


References to Advisories, Solutions, and Tools