A flaw was found in moodle. Some hidden user profile fields are visible in gradebook reports, which could result in users without the "view hidden user fields" capability having access to the information.
References
Link | Resource |
---|---|
https://bugzilla.redhat.com/show_bug.cgi?id=2304257 | Permissions Required |
https://moodle.org/mod/forum/discuss.php?d=461197 | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
01 May 2025, 16:07
Type | Values Removed | Values Added |
---|---|---|
CPE | cpe:2.3:a:moodle:moodle:*:*:*:*:*:*:*:* | |
First Time |
Moodle
Moodle moodle |
|
References | () https://bugzilla.redhat.com/show_bug.cgi?id=2304257 - Permissions Required | |
References | () https://moodle.org/mod/forum/discuss.php?d=461197 - Vendor Advisory |
12 Nov 2024, 20:35
Type | Values Removed | Values Added |
---|---|---|
CWE | CWE-312 |
12 Nov 2024, 13:55
Type | Values Removed | Values Added |
---|---|---|
Summary |
|
11 Nov 2024, 13:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-11-11 13:15
Updated : 2025-05-01 16:07
NVD link : CVE-2024-43429
Mitre link : CVE-2024-43429
CVE.ORG link : CVE-2024-43429
JSON object : View
Products Affected
moodle
- moodle
CWE
CWE-312
Cleartext Storage of Sensitive Information