An issue was discovered in Mahara 17.10 before 17.10.8, 18.04 before 18.04.4, and 18.10 before 18.10.1. A site administrator can suspend the system user (root), causing all users to be locked out from the system.
2019-05-07T17:29:00.517
2024-11-21T04:52:08.957
Modified
CVSSv3.0: 4.9 (MEDIUM)
AV:N/AC:L/Au:S/C:N/I:N/A:P
8.0
2.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | mahara | mahara | < 17.10.8 | Yes |
Application | mahara | mahara | < 18.04.4 | Yes |
Application | mahara | mahara | < 18.10.1 | Yes |