CVE Vulnerabilities

CVE-2019-3851

Published: Mar 26, 2019 | Modified: Nov 21, 2024
CVSS 3.x
4.3
MEDIUM
Source:
NVD
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N
CVSS 2.x
4 MEDIUM
AV:N/AC:L/Au:S/C:N/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

A vulnerability was found in moodle before versions 3.6.3 and 3.5.5. There was a link to site home within the the Boost themes secure layout, meaning students could navigate out of the page.

Affected Software

NameVendorStart VersionEnd Version
MoodleMoodle3.5.0 (including)3.5.5 (excluding)
MoodleMoodle3.6.0 (including)3.6.3 (excluding)

References