Users with the capability to configure badge criteria (teachers and managers by default) were able to configure course badges with profile field criteria, which should only be available for site badges.
References
Link | Resource |
---|---|
https://bugzilla.redhat.com/show_bug.cgi?id=2064118 | Issue Tracking Third Party Advisory |
https://bugzilla.redhat.com/show_bug.cgi?id=2064118 | Issue Tracking Third Party Advisory |
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
Configuration 3 (hide)
|
History
21 Nov 2024, 06:39
Type | Values Removed | Values Added |
---|---|---|
References | () https://bugzilla.redhat.com/show_bug.cgi?id=2064118 - Issue Tracking, Third Party Advisory |
Information
Published : 2022-04-29 17:15
Updated : 2024-11-21 06:39
NVD link : CVE-2022-0984
Mitre link : CVE-2022-0984
CVE.ORG link : CVE-2022-0984
JSON object : View
Products Affected
fedoraproject
- fedora
redhat
- enterprise_linux
moodle
- moodle
CWE
CWE-863
Incorrect Authorization