PT-2023-8912 · Moodle+1 · Moodle+1

Fabián Glagovsky

·

Published

2023-11-09

·

Updated

2024-04-03

·

CVE-2023-5551

CVSS v3.1

3.3

Low

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N
Name of the Vulnerable Software and Affected Versions Moodle (affected versions not specified)
Description The issue is related to the Separate Groups mode in the forum summary report, where restrictions were not properly enforced, allowing the display of users from other groups. This could potentially enable a remote attacker to gain unauthorized access to protected information.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Information Disclosure

Weakness Enumeration

Related Identifiers

BDU:2024-02592
BIT-MOODLE-2023-5551
CVE-2023-5551
GHSA-JR83-8X65-XCR5

Affected Products

Moodle
Red Os