Description
An SQL injection risk was identified in Badges code relating to configuring criteria. Access to the relevant capability was limited to teachers and managers by default.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-1433 | An SQL injection risk was identified in Badges code relating to configuring criteria. Access to the relevant capability was limited to teachers and managers by default. |
Github GHSA |
GHSA-h2fw-93qx-vrcq | SQL Injection in Moodle |
References
History
No history.
Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2024-08-02T23:47:42.821Z
Reserved: 2022-03-15T00:00:00.000Z
Link: CVE-2022-0983
No data.
Status : Modified
Published: 2022-03-25T19:15:10.400
Modified: 2024-11-21T06:39:47.790
Link: CVE-2022-0983
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Github GHSA