Moodle before 2.2.2 has a password and web services issue where when the user profile is updated the user password is reset if not specified.
2019-11-14T16:15:14.483
2024-11-21T01:36:34.787
Modified
CVSSv3.1: 8.2 (HIGH)
AV:N/AC:L/Au:N/C:N/I:P/A:P
10.0
4.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | moodle | moodle | < 2.2.2 | Yes |
Operating System | fedoraproject | fedora | 15 | Yes |
Operating System | fedoraproject | fedora | 16 | Yes |
Operating System | fedoraproject | fedora | 17 | Yes |
Operating System | redhat | enterprise_linux | 6.0 | Yes |