CVE Vulnerabilities

CVE-2023-5543

Published: Nov 09, 2023 | Modified: Nov 18, 2023
CVSS 3.x
3.3
LOW
Source:
NVD
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM

When duplicating a BigBlueButton activity, the original meeting ID was also duplicated instead of using a new ID for the new activity. This could provide unintended access to the original meeting.

Affected Software

Name Vendor Start Version End Version
Moodle Moodle 4.0.0 (including) 4.0.11 (excluding)
Moodle Moodle 4.1.0 (including) 4.1.6 (excluding)
Moodle Moodle 4.2.0 (including) 4.2.3 (excluding)
Moodle Ubuntu bionic *
Moodle Ubuntu trusty *
Moodle Ubuntu xenial *

References