PT-2023-32167 · H5P · H5P

Josh Manders

·

Publicado

2023-11-09

·

Atualizado

2024-07-03

·

CVE-2023-5545

CVSS v3.1

5.3

Média

VetorAV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions H5P (affected versions not specified)
Description The issue concerns H5P metadata automatically populating the author field with the user's username, potentially exposing sensitive information.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exposure of Resource to Wrong Sphere

Information Disclosure

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

BIT-MOODLE-2023-5545
CVE-2023-5545
GHSA-26FG-V32R-H663

Produtos afetados

H5P