Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
Github GHSA |
GHSA-j822-x5gg-5r56 | Moodle allows users to retrieve information they did not have permission to access |
| Link | Providers |
|---|---|
| https://bugzilla.redhat.com/show_bug.cgi?id=2309941 |
|
Mon, 02 Jun 2025 16:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Moodle
Moodle moodle |
|
| Weaknesses | CWE-862 | |
| CPEs | cpe:2.3:a:moodle:moodle:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Moodle
Moodle moodle |
Wed, 20 Nov 2024 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
cvssV3_1
|
Wed, 20 Nov 2024 10:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A flaw was found in Moodle. Dynamic tables did not enforce capability checks, which resulted in users having the ability to retrieve information they did not have permission to access. | |
| Title | Moodle: unprotected access to sensitive information via dynamic tables | |
| References |
|
Status: PUBLISHED
Assigner: fedora
Published:
Updated: 2024-11-20T19:18:18.428Z
Reserved: 2024-09-04T22:00:30.976Z
Link: CVE-2024-45689
Updated: 2024-11-20T19:18:13.720Z
Status : Analyzed
Published: 2024-11-20T11:15:05.337
Modified: 2025-06-02T15:33:57.730
Link: CVE-2024-45689
No data.
OpenCVE Enrichment
No data.
Github GHSA