Total vulnerabilities in the database
When duplicating a BigBlueButton activity, the original meeting ID was also duplicated instead of using a new ID for the new activity. This could provide unintended access to the original meeting.
Software | From | Fixed in |
---|---|---|
moodle / moodle | 4.2.0 | 4.2.3 |
moodle / moodle | 4.1.0 | 4.1.6 |
moodle / moodle | 4.0.0 | 4.0.11 |
fedoraproject / extra_packages_for_enterprise_linux | 7.0 | 7.0.x |
fedoraproject / fedora | 38 | 38.x |