Vulnerability Bulletins

MSA-23-0034: Students could see other students in "Only see own membership" groups


System information

   
Affected software PHP

Description

by Michael Hawkins. Students in "Only see own membership" groups could see other students in the group, which should be hidden.Severity/Risk:MinorVersions affected:4.2.2Versions fixed:4.2.3Reported by:EliotCVE identifier:CVE-2023-5542Changes (master):http://git.moodle.org/gw?p=moodle.git&a=search&h=HEAD&st=commit&s=MDL-79213Tracker issue:MDL-79213 Students could see other students in "Only see own membership" groups

More info:

https://moodle.org/mod/forum/discuss.php?d=451583&parent=1814891

Standar resources

Property Value
CVE CVE-2023-5542.

Version history

Version Comments Date
Ministerio de Defensa
CNI
CCN
CCN-CERT