CVE-2020-1754 Vulnerability Details
/
/
/
CVE-2020-1754 Metadata Quick Info
CVE Published: 05/08/2022 |
CVE Updated: 04/08/2024 |
CVE Year: 2020
Source: redhat |
Vendor: n/a |
Product: Moodle
Status : PUBLISHED
CVE-2020-1754 Description
In Moodle before 3.8.2, 3.7.5, 3.6.9 and 3.5.11, users viewing the grade history report without the \'access all groups\' capability were not restricted to viewing grades of users within their own groups.
Metrics
CVSS Version: 3.1 |
Base Score: n/a
Vector: n/a
l➤ Exploitability Metrics:
Attack Vector (AV)*
Attack Complexity (AC)*
Privileges Required (PR)*
User Interaction (UI)*
Scope (S)*
l➤ Impact Metrics:
Confidentiality Impact (C)*
Integrity Impact (I)*
Availability Impact (A)*
Weakness Enumeration (CWE)
CWE-ID: CWE-284
CWE Name: CWE-284
Source: n/a
Common Attack Pattern Enumeration and Classification (CAPEC)
CAPEC-ID:
CAPEC Description:
Source: NVD (National Vulnerability Database).