Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2015-3273

mod/forum/post.php in Moodle 2.9.x before 2.9.1 does not consider the mod/forum:canposttomygroups capability before authorizing "Post a copy to all groups" actions, which allows remote authenticated users to bypass intended access restrictions by leveraging per-group authorization.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.003
EPSS Ranking 50.8%
CVSS Severity
CVSS v3 Score 4.3
CVSS v2 Score 4.0
Products affected by CVE-2015-3273
  • Moodle » Moodle » Version: 2.9.0
    cpe:2.3:a:moodle:moodle:2.9.0


Contact Us

Shodan ® - All rights reserved