A flaw was found in Moodle before 3.7, 3.6.4, 3.5.6, 3.4.9 and 3.1.18. The size of users' private file uploads via email were not correctly checked, so their quota allowance could be exceeded.
2019-06-26T19:15:11.103
2024-11-21T04:18:29.283
Modified
CVSSv3.1: 3.7 (LOW)
AV:N/AC:M/Au:N/C:N/I:P/A:N
8.6
2.9
| Type | Vendor | Product | Version/Range | Vulnerable? |
|---|---|---|---|---|
| Application | moodle | moodle | ≤ 3.1.17 | Yes |
| Application | moodle | moodle | ≤ 3.4.8 | Yes |
| Application | moodle | moodle | ≤ 3.5.5 | Yes |
| Application | moodle | moodle | ≤ 3.6.3 | Yes |