ZeroHour

CVE-2021-32477

CVSS 3.1
4.3 medium
EPSS
<1%p52
Published
()
Modified
Description

The last time a user accessed the mobile app is displayed on their profile page, but should be restricted to users with the relevant capability (site administrators by default). Moodle versions 3.10 to 3.10.3 are affected.

Vendors
moodle
Products
moodle
Weakness
CWE-200, CWE-862
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N

In the news

No ingested article mentions this CVE yet.