CVE-2025-3627
EUVD-2025-1252825.04.2025, 15:15
A security vulnerability was discovered in Moodle that allows some users to access sensitive information about other students before they finish verifying their identities using two-factor authentication (2FA).Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| moodle | moodle | 4.3.0 ≤ 𝑥 < 4.3.12 |
| moodle | moodle | 4.4.0 ≤ 𝑥 < 4.4.8 |
| moodle | moodle | 4.5.0 ≤ 𝑥 < 4.5.4 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration