Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
Moodle: moodle: data exposure of user identifiers in urls
Vulnerability Description
A flaw was found in moodle. During anonymous assignment submissions, user identifiers were inadvertently exposed in URLs. This data exposure allows unauthorized viewers to see internal user IDs, compromising the intended anonymity and potentially leading to information disclosure.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N
Vulnerability Type
通过发送数据的信息暴露
Vulnerability Title
Moodle 安全漏洞
Vulnerability Description
Moodle是Moodle开源的一套免费的电子学习软件平台,也称课程管理系统、学习管理系统或虚拟学习环境。 moodle存在安全漏洞,该漏洞源于匿名作业提交期间用户标识符在URL中意外暴露,可能导致未经授权的查看者看到内部用户ID,从而破坏预期的匿名性并可能导致信息泄露。
CVSS Information
N/A
Vulnerability Type
N/A