CVE Vulnerabilities

CVE-2019-3851

Published: Mar 26, 2019 | Modified: Aug 24, 2020
CVSS 3.x
4.3
MEDIUM
Source:
NVD
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N
CVSS 2.x
4 MEDIUM
AV:N/AC:L/Au:S/C:N/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu

A vulnerability was found in moodle before versions 3.6.3 and 3.5.5. There was a link to site home within the the Boost themes secure layout, meaning students could navigate out of the page.

Affected Software

Name Vendor Start Version End Version
Moodle Moodle 3.5.0 (including) 3.5.5 (excluding)
Moodle Moodle 3.6.0 (including) 3.6.3 (excluding)

References