PT-2024-8662 · Moodle+2 · Moodle+2

Published

2024-10-14

·

Updated

2024-12-03

·

CVE-2024-48898

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N
Name of the Vulnerable Software and Affected Versions Moodle (affected versions not specified)
Description A vulnerability was found in Moodle, related to the lack of authorization procedures. This issue allows users with access to delete audiences from reports to delete audiences from other reports they do not have permission to delete from, potentially enabling remote attackers to gain unauthorized access to system elements.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Missing Authorization

Weakness Enumeration

Related Identifiers

ALT-PU-2024-16385
ALT-PU-2024-16417
BDU:2024-10261
BIT-MOODLE-2024-48898
CVE-2024-48898
GHSA-FJQ9-452G-JG3Q

Affected Products

Alt Linux
Moodle
Red Os