Vulnerability Details CVE-2019-9708
An issue was discovered in Mahara 17.10 before 17.10.8, 18.04 before 18.04.4, and 18.10 before 18.10.1. A site administrator can suspend the system user (root), causing all users to be locked out from the system.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.004
EPSS Ranking 59.0%
CVSS Severity
CVSS v3 Score 4.9
CVSS v2 Score 4.0
Products affected by CVE-2019-9708
-
cpe:2.3:a:mahara:mahara:17.10.0
-
cpe:2.3:a:mahara:mahara:17.10.1
-
cpe:2.3:a:mahara:mahara:17.10.2
-
cpe:2.3:a:mahara:mahara:17.10.3
-
cpe:2.3:a:mahara:mahara:17.10.4
-
cpe:2.3:a:mahara:mahara:17.10.5
-
cpe:2.3:a:mahara:mahara:17.10.6
-
cpe:2.3:a:mahara:mahara:17.10.7
-
cpe:2.3:a:mahara:mahara:18.04.0
-
cpe:2.3:a:mahara:mahara:18.04.1
-
cpe:2.3:a:mahara:mahara:18.04.2
-
cpe:2.3:a:mahara:mahara:18.04.3
-
cpe:2.3:a:mahara:mahara:18.10.0