ZeroHour

CVE-2022-0983

CVSS 3.1
8.8 high
EPSS
<1%p59
Published
()
Modified
Description

An SQL injection risk was identified in Badges code relating to configuring criteria. Access to the relevant capability was limited to teachers and managers by default.

Vendors
moodlefedoraproject
Products
moodle, fedora, extra packages for enterprise linux
Weakness
CWE-89
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.