PT-2017-17790 · Moodle · Moodle
Thomas Jaisson
·
Published
2017-07-17
·
Updated
2022-05-13
·
CVE-2017-7532
CVSS v3.1
6.5
Medium
| Vector | AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N |
Name of the Vulnerable Software and Affected Versions
Moodle versions 3.x
Description
The issue allows course creators to modify system default settings for courses.
Recommendations
For Moodle versions 3.x, restrict course creators' access to system default settings to prevent unauthorized changes.
Fix
Improper Privilege Management
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Moodle