CVE Vulnerabilities

CVE-2022-40208

Published: Mar 24, 2023 | Modified: Mar 30, 2023
CVSS 3.x
4.3
MEDIUM
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

In Moodle, insufficient limitations in some quiz web services made it possible for students to bypass sequential navigation during a quiz attempt.

Affected Software

Name Vendor Start Version End Version
Moodle Moodle 3.9.0 (excluding) 3.9.16 (excluding)
Moodle Moodle 3.11.0 (excluding) 3.11.9 (excluding)
Moodle Moodle 4.0.0 (excluding) 4.0.3 (excluding)
Moodle Moodle 3.9.0 (including) 3.9.0 (including)
Moodle Moodle 3.11.0 (including) 3.11.0 (including)
Moodle Moodle 4.0.0 (including) 4.0.0 (including)

References