VDB

CVE-2018-1082

CVE-2018-1082 PUBLISHED

A flaw was found in Moodle 3.4 to 3.4.1, and 3.3 to 3.3.4. If a user account using OAuth2 authentication method was once confirmed but later suspended, the user could still login to the site.

EPSS 1.53% · 81.7th percentile

Risk Scores

EPSS Score
1.53%
81.7th percentile

Affected Products

VendorProductVersions
Ubuntu:16.04:LTSmoodle3.0.3+dfsg-0ubuntu1, 2.7.11+dfsg-2, 2.7.12+dfsg-1
Ubuntu:18.04:LTSmoodle3.0.3+dfsg-0ubuntu1, 0

Timeline

  • Mar 26, 2018 CVE Published
  • Apr 14, 2021 EPSS Score
  • Jun 23, 2021 EPSS Score
  • Aug 24, 2021 EPSS Score
  • Dec 27, 2021 EPSS Score
  • Feb 28, 2022 EPSS Score
  • May 2, 2022 EPSS Score
  • Jul 3, 2022 EPSS Score
  • Sep 5, 2022 EPSS Score
  • Nov 6, 2022 EPSS Score
  • Mar 11, 2023 EPSS Score
  • May 13, 2023 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›