VDB
CVE-2020-1754
CVE-2020-1754
PUBLISHED
CVSS 4.300000190734863 MEDIUM
In Moodle before 3.8.2, 3.7.5, 3.6.9 and 3.5.11, users viewing the grade history report without the 'access all groups' capability were not restricted to viewing grades of users within their own groups.
EPSS 0.64% · 48.1th percentile
Risk Scores
CVSS 3.1
4.300000190734863
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
EPSS Score
0.64%
48.1th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Bitnami | moodle | 3.8.0, 3.5.0, 3.6.0 |
| Bitnami | moodle | 3.5.0, 3.6.0, 3.7.0 |
Timeline
- Mar 17, 2020 CVE Published
- Aug 6, 2022 EPSS Score
- Sep 22, 2022 EPSS Score
- Nov 7, 2022 EPSS Score
- Dec 24, 2022 EPSS Score
- Feb 8, 2023 EPSS Score
- Mar 7, 2023 EPSS Score
- Mar 27, 2023 EPSS Score
- May 12, 2023 EPSS Score
- Jun 28, 2023 EPSS Score
- Aug 13, 2023 EPSS Score
- Sep 29, 2023 EPSS Score