René Helmke 7791f18b51 bootstrap
2023-05-16 16:09:41 +02:00

230 lines
7.7 KiB
JSON

{
"id": "CVE-2013-2080",
"sourceIdentifier": "secalert@redhat.com",
"published": "2013-05-25T03:18:15.867",
"lastModified": "2020-12-01T14:52:24.377",
"vulnStatus": "Modified",
"descriptions": [
{
"lang": "en",
"value": "The core_grade component in Moodle through 2.2.10, 2.3.x before 2.3.7, and 2.4.x before 2.4.4 does not properly consider the existence of hidden grades, which allows remote authenticated users to obtain sensitive information by leveraging the student role and reading the Gradebook Overview report."
},
{
"lang": "es",
"value": "El componente core_grade en Moodle hasta v2.1.10, v2.2.x hasta v2.2.10, v2.3.x hasta v2.3.7, y v2.4.x hasta v2.4.4, no tiene en cuenta adecuadamente la existencia de grados ocultos, que permite a los usuarios autenticados remotos obtener informaci\u00f3n sensible mediante el aprovechamiento del papel del estudiante y la lectura del informe de Gradebook Overview"
}
],
"metrics": {
"cvssMetricV2": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"cvssData": {
"version": "2.0",
"vectorString": "AV:N/AC:L/Au:S/C:P/I:N/A:N",
"accessVector": "NETWORK",
"accessComplexity": "LOW",
"authentication": "SINGLE",
"confidentialityImpact": "PARTIAL",
"integrityImpact": "NONE",
"availabilityImpact": "NONE",
"baseScore": 4.0
},
"baseSeverity": "MEDIUM",
"exploitabilityScore": 8.0,
"impactScore": 2.9,
"acInsufInfo": false,
"obtainAllPrivilege": false,
"obtainUserPrivilege": false,
"obtainOtherPrivilege": false,
"userInteractionRequired": false
}
]
},
"weaknesses": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"description": [
{
"lang": "en",
"value": "CWE-264"
}
]
}
],
"configurations": [
{
"nodes": [
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": true,
"criteria": "cpe:2.3:a:moodle:moodle:2.2.0:*:*:*:*:*:*:*",
"matchCriteriaId": "15A73CE2-73DA-4274-89E0-DD9A413ED17F"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:moodle:moodle:2.2.1:*:*:*:*:*:*:*",
"matchCriteriaId": "39075F6E-2925-4897-B1DE-C86A066DF54B"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:moodle:moodle:2.2.2:*:*:*:*:*:*:*",
"matchCriteriaId": "179DBC2B-B35F-4A19-B522-DF996D5E13E4"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:moodle:moodle:2.2.3:*:*:*:*:*:*:*",
"matchCriteriaId": "FA527724-B44E-46B6-BA53-A83B012EA376"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:moodle:moodle:2.2.4:*:*:*:*:*:*:*",
"matchCriteriaId": "31A8CAEA-CCCF-4678-B61E-0FFE439890DB"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:moodle:moodle:2.2.5:*:*:*:*:*:*:*",
"matchCriteriaId": "3C22E1EB-57DA-4E3C-BF38-29E2F50AEBF2"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:moodle:moodle:2.2.6:*:*:*:*:*:*:*",
"matchCriteriaId": "25F99A03-DD94-4380-8E6B-C95D3A57D6EF"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:moodle:moodle:2.2.7:*:*:*:*:*:*:*",
"matchCriteriaId": "54ED2D6B-48F7-444D-8EC7-C51719F970CC"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:moodle:moodle:2.2.8:*:*:*:*:*:*:*",
"matchCriteriaId": "36B291C0-7E41-4073-AFFF-CFEFEDDFD6A5"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:moodle:moodle:2.2.9:*:*:*:*:*:*:*",
"matchCriteriaId": "4E36C4AB-0599-40A3-BD80-4DDB1631A604"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:moodle:moodle:2.2.10:*:*:*:*:*:*:*",
"matchCriteriaId": "A04348FF-A3BE-4063-A208-27C3E46B67EF"
}
]
}
]
},
{
"nodes": [
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": true,
"criteria": "cpe:2.3:a:moodle:moodle:2.3.0:*:*:*:*:*:*:*",
"matchCriteriaId": "BFD575CF-2AF2-443F-841D-F7E25FBD455A"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:moodle:moodle:2.3.1:*:*:*:*:*:*:*",
"matchCriteriaId": "AC2A1954-E30F-40EC-BA59-40D29573E7D6"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:moodle:moodle:2.3.2:*:*:*:*:*:*:*",
"matchCriteriaId": "25EA194F-BE9D-49A8-AA35-FC7810C06643"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:moodle:moodle:2.3.3:*:*:*:*:*:*:*",
"matchCriteriaId": "2C3888D8-8219-4DE4-8E6C-84F58AFD3B15"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:moodle:moodle:2.3.4:*:*:*:*:*:*:*",
"matchCriteriaId": "E15AADAA-EFF5-4116-A683-D2B9824AA353"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:moodle:moodle:2.3.5:*:*:*:*:*:*:*",
"matchCriteriaId": "C917E5A8-ABE8-4F01-8580-329836CC2C55"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:moodle:moodle:2.3.6:*:*:*:*:*:*:*",
"matchCriteriaId": "70C08FF1-BAA7-4534-98E4-80231C25BC83"
}
]
}
]
},
{
"nodes": [
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": true,
"criteria": "cpe:2.3:a:moodle:moodle:2.4.0:*:*:*:*:*:*:*",
"matchCriteriaId": "B8E52813-E056-4A5C-8BF5-4DD5EF5BF041"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:moodle:moodle:2.4.1:*:*:*:*:*:*:*",
"matchCriteriaId": "62156008-2728-4207-AF60-E6330421D102"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:moodle:moodle:2.4.2:*:*:*:*:*:*:*",
"matchCriteriaId": "094DCC66-8C95-4DD6-B8DD-FB2D46A2A847"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:moodle:moodle:2.4.3:*:*:*:*:*:*:*",
"matchCriteriaId": "D27EBAD4-F6F3-4E6A-8E42-EBB36655376D"
}
]
}
]
}
],
"references": [
{
"url": "http://git.moodle.org/gw?p=moodle.git&a=search&h=HEAD&st=commit&s=MDL-37475",
"source": "secalert@redhat.com",
"tags": [
"Patch"
]
},
{
"url": "http://lists.fedoraproject.org/pipermail/package-announce/2013-May/106965.html",
"source": "secalert@redhat.com"
},
{
"url": "http://lists.fedoraproject.org/pipermail/package-announce/2013-May/106988.html",
"source": "secalert@redhat.com"
},
{
"url": "http://lists.fedoraproject.org/pipermail/package-announce/2013-May/107026.html",
"source": "secalert@redhat.com"
},
{
"url": "http://openwall.com/lists/oss-security/2013/05/21/1",
"source": "secalert@redhat.com"
},
{
"url": "https://moodle.org/mod/forum/discuss.php?d=228931",
"source": "secalert@redhat.com",
"tags": [
"Vendor Advisory"
]
}
]
}