Description
Unspecified vulnerability in the user editing interface in Moodle 1.5.x, 1.6 before 1.6.6, and 1.7 before 1.7.3 allows remote authenticated users to gain privileges via unknown vectors.
References (2)
Core 2
Core References
Patch, Vendor Advisory x_refsource_confirm
http://moodle.org/mod/forum/discuss.php?d=87971
Third Party Advisory vendor-advisory
x_refsource_debian
http://www.debian.org/security/2008/dsa-1691
Scores
EPSS
0.0039
EPSS Percentile
60.3%
Details
CWE
CWE-264
Status
published
Products (2)
debian/debian_linux
4.0
moodle/moodle
1.5 - 1.5.4
Published
Feb 13, 2009
Tracked Since
Feb 18, 2026