Vulnerabilities > CVE-2019-10154 - Unspecified vulnerability in Moodle

047910
CVSS 7.5 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
HIGH
Integrity impact
NONE
Availability impact
NONE
network
low complexity
moodle

Summary

A flaw was found in Moodle before versions 3.7, 3.6.4. A web service fetching messages was not restricted to the current user's conversations.

Vulnerable Configurations

Part Description Count
Application
Moodle
340