Moodle
cpe:2.3:a:moodle:moodle:*:*:*:*:*:*:*
- >= 4.5, <= 4.5.3
- >= 4.4, <= 4.4.7
- >= 4.3, <= 4.3.11
- >= 4.1, <= 4.1.17
An access control vulnerability has been identified in Moodle's RSS block feature. This issue allows unauthorized users to view RSS feeds due to inadequate permission checks. The vulnerability affects Moodle versions 4.5 prior to 4.5.4, 4.4 prior to 4.4.8, 4.3 prior to 4.3.12, 4.1 prior to 4.1.18, and earlier unsupported versions.
Exploitation of this vulnerability leads to unauthorized access to RSS feeds, allowing users to view content that should be restricted.
Users can upgrade to Moodle versions 4.5.4, 4.4.8, 4.3.12, or 4.1.18 to address this vulnerability.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.