Moodle
cpe:2.3:a:moodle:moodle:*:*:*:*:*:*:*
- >= 4.5, <= 4.5.2
- >= 4.4, <= 4.4.6
- >= 4.3, <= 4.3.10
- >= 4.1, <= 4.1.16
A vulnerability exists in Moodle due to inadequate capability checks in certain grade reports. This flaw enables users without the necessary permissions to view hidden grades. The issue affects Moodle versions 4.5 prior to 4.5.3, 4.4 prior to 4.4.7, 4.3 prior to 4.3.11, 4.1 prior to 4.1.17, and earlier unsupported versions.
Exploitation of this vulnerability allows unauthorized users to access hidden grades, potentially leading to unfair academic advantages or breaches of privacy.
Users can upgrade to Moodle versions 4.5.3, 4.4.7, 4.3.11, or 4.1.17 to address this vulnerability.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.