A vulnerability was found in moodle before versions 3.6.3 and 3.5.5. There was a link to site home within the the Boost theme's secure layout, meaning students could navigate out of the page.
2019-03-26T18:29:00.887
2024-11-21T04:42:43.147
Modified
CVSSv3.0: 4.3 (MEDIUM)
AV:N/AC:L/Au:S/C:N/I:P/A:N
8.0
2.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | moodle | moodle | < 3.5.5 | Yes |
Application | moodle | moodle | < 3.6.3 | Yes |
Operating System | fedoraproject | fedora | - | Yes |