Vulnerability Details CVE-2023-28336
Insufficient filtering of grade report history made it possible for teachers to access the names of users they could not otherwise access.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.004
EPSS Ranking 61.1%
CVSS Severity
CVSS v3 Score 4.3
Products affected by CVE-2023-28336
-
cpe:2.3:a:moodle:moodle:3.11.0
-
cpe:2.3:a:moodle:moodle:3.11.1
-
cpe:2.3:a:moodle:moodle:3.11.10
-
cpe:2.3:a:moodle:moodle:3.11.11
-
cpe:2.3:a:moodle:moodle:3.11.12
-
cpe:2.3:a:moodle:moodle:3.11.2
-
cpe:2.3:a:moodle:moodle:3.11.3
-
cpe:2.3:a:moodle:moodle:3.11.4
-
cpe:2.3:a:moodle:moodle:3.11.5
-
cpe:2.3:a:moodle:moodle:3.11.6
-
cpe:2.3:a:moodle:moodle:3.11.7
-
cpe:2.3:a:moodle:moodle:3.11.8
-
cpe:2.3:a:moodle:moodle:3.11.9
-
cpe:2.3:a:moodle:moodle:3.9.0
-
cpe:2.3:a:moodle:moodle:3.9.1
-
cpe:2.3:a:moodle:moodle:3.9.10
-
cpe:2.3:a:moodle:moodle:3.9.11
-
cpe:2.3:a:moodle:moodle:3.9.12
-
cpe:2.3:a:moodle:moodle:3.9.13
-
cpe:2.3:a:moodle:moodle:3.9.14
-
cpe:2.3:a:moodle:moodle:3.9.15
-
cpe:2.3:a:moodle:moodle:3.9.16
-
cpe:2.3:a:moodle:moodle:3.9.17
-
cpe:2.3:a:moodle:moodle:3.9.18
-
cpe:2.3:a:moodle:moodle:3.9.19
-
cpe:2.3:a:moodle:moodle:3.9.2
-
cpe:2.3:a:moodle:moodle:3.9.3
-
cpe:2.3:a:moodle:moodle:3.9.4
-
cpe:2.3:a:moodle:moodle:3.9.5
-
cpe:2.3:a:moodle:moodle:3.9.6
-
cpe:2.3:a:moodle:moodle:3.9.7
-
cpe:2.3:a:moodle:moodle:3.9.8
-
cpe:2.3:a:moodle:moodle:3.9.9
-
cpe:2.3:a:moodle:moodle:4.0.0
-
cpe:2.3:a:moodle:moodle:4.0.1
-
cpe:2.3:a:moodle:moodle:4.0.2
-
cpe:2.3:a:moodle:moodle:4.0.3
-
cpe:2.3:a:moodle:moodle:4.0.5
-
cpe:2.3:a:moodle:moodle:4.0.6
-
cpe:2.3:a:moodle:moodle:4.1.0
-
cpe:2.3:a:moodle:moodle:4.1.1
-
cpe:2.3:o:fedoraproject:fedora:36