Vulnerability Bulletins

MSA-23-0043: Forum summary report shows students from other groups when in Separate Groups mode


System information

   
Affected software PHP

Description

by Michael Hawkins. Separate Groups mode restrictions were not honoured in the forum summary report, which would display users from other groups.Severity/Risk:MinorVersions affected:4.2 to 4.2.2, 4.1 to 4.1.5, 4.0 to 4.0.10, 3.11 to 3.11.16, 3.9 to 3.9.23 and earlier unsupported versionsVersions fixed:4.2.3, 4.1.6, 4.0.11, 3.11.17 and 3.9.24Reported by:Fabián GlagovskyCVE identifier:CVE-2023-5551Changes

More info:

https://moodle.org/mod/forum/discuss.php?d=451592&parent=1814901

Standar resources

Property Value
CVE CVE-2023-5551.

Version history

Version Comments Date
Ministerio de Defensa
CNI
CCN
CCN-CERT