Moodle
cpe:2.3:a:moodle:moodle:*:*:*:*:*:*:*
- >= 4.5, <= 4.5.3
A vulnerability exists in Moodle versions 4.5 to 4.5.3, allowing for the de-anonymization of anonymous assignment submissions. This issue arises from a lack of proper capability checks, enabling teachers to identify students' identities through the submissions search feature.
Exploitation of this vulnerability exposes the identities of students who submitted assignments anonymously.
Users can upgrade to Moodle version 4.5.4 to address this vulnerability.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.