CVE-2016-3729
20.04.2017, 21:59
The user editing form in Moodle 3.0 through 3.0.3, 2.9 through 2.9.5, 2.8 through 2.8.11, 2.7 through 2.7.13, and earlier allows remote authenticated users to edit profile fields locked by the administrator.Enginsight
| Vendor | Product | Version |
|---|---|---|
| moodle | moodle | 2.7.0 |
| moodle | moodle | 2.7.0:beta |
| moodle | moodle | 2.7.0:rc1 |
| moodle | moodle | 2.7.0:rc2 |
| moodle | moodle | 2.7.1 |
| moodle | moodle | 2.7.2 |
| moodle | moodle | 2.7.3 |
| moodle | moodle | 2.7.4 |
| moodle | moodle | 2.7.5 |
| moodle | moodle | 2.7.6 |
| moodle | moodle | 2.7.7 |
| moodle | moodle | 2.7.8 |
| moodle | moodle | 2.7.9 |
| moodle | moodle | 2.7.10 |
| moodle | moodle | 2.7.11 |
| moodle | moodle | 2.7.12 |
| moodle | moodle | 2.7.13 |
| moodle | moodle | 2.8.0 |
| moodle | moodle | 2.8.1 |
| moodle | moodle | 2.8.2 |
| moodle | moodle | 2.8.3 |
| moodle | moodle | 2.8.4 |
| moodle | moodle | 2.8.5 |
| moodle | moodle | 2.8.6 |
| moodle | moodle | 2.8.7 |
| moodle | moodle | 2.8.8 |
| moodle | moodle | 2.8.9 |
| moodle | moodle | 2.8.10 |
| moodle | moodle | 2.8.11 |
| moodle | moodle | 2.9.0 |
| moodle | moodle | 2.9.1 |
| moodle | moodle | 2.9.2 |
| moodle | moodle | 2.9.3 |
| moodle | moodle | 2.9.4 |
| moodle | moodle | 2.9.5 |
| moodle | moodle | 3.0.0 |
| moodle | moodle | 3.0.0:beta |
| moodle | moodle | 3.0.0:rc1 |
| moodle | moodle | 3.0.0:rc2 |
| moodle | moodle | 3.0.0:rc3 |
| moodle | moodle | 3.0.0:rc4 |
| moodle | moodle | 3.0.1 |
| moodle | moodle | 3.0.2 |
| moodle | moodle | 3.0.3 |
𝑥
= Vulnerable software versions
Ubuntu Releases
Common Weakness Enumeration
References