Total vulnerabilities in the database
Incorrect validation of allowed event types in a calendar web service made it possible for some users to create events with types/audiences they did not have permission to publish to.
Software | From | Fixed in |
---|---|---|
![]() |
4.3.0 | 4.3.4 |
![]() |
4.2.0 | 4.2.7 |
![]() |
- | 4.1.10 |
moodle / moodle | - | 4.1.10 |
moodle / moodle | 4.2.0 | 4.2.7 |
moodle / moodle | 4.3.0 | 4.3.4 |