CVE-2016-2155
Published May 22, 2016
Last updated 4 years ago
Overview
- Description
- The grade-reporting feature in Singleview (aka Single View) in Moodle 2.8.x before 2.8.11, 2.9.x before 2.9.5, and 3.0.x before 3.0.3 does not consider the moodle/grade:manage capability, which allows remote authenticated users to modify "Exclude grade" settings by leveraging the Non-Editing Instructor role.
- Source
- secalert@redhat.com
- NVD status
- Modified
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 3.0
- Type
- Primary
- Base score
- 4.3
- Impact score
- 1.4
- Exploitability score
- 2.8
- Vector string
- CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N
- Severity
- MEDIUM
CVSS 2.0
- Type
- Primary
- Base score
- 4
- Impact score
- 2.9
- Exploitability score
- 8
- Vector string
- AV:N/AC:L/Au:S/C:N/I:P/A:N
Weaknesses
- nvd@nist.gov
- CWE-264
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:moodle:moodle:2.8.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "12737AF4-B2D5-4661-B06A-6A06FE95EC2D" }, { "criteria": "cpe:2.3:a:moodle:moodle:2.8.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "88C59A94-D225-478A-B23E-41C4324BC643" }, { "criteria": "cpe:2.3:a:moodle:moodle:2.8.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "192EA69B-A1E1-4E0D-8E73-76EB74CCDE49" }, { "criteria": "cpe:2.3:a:moodle:moodle:2.8.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D88385B1-EEFB-4825-BD8F-215C39FD86DA" }, { "criteria": "cpe:2.3:a:moodle:moodle:2.8.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A3BE2782-D167-4237-B57D-2E4C04571524" }, { "criteria": "cpe:2.3:a:moodle:moodle:2.8.5:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F277F979-12FA-47A5-B0A5-D174C2127A7D" }, { "criteria": "cpe:2.3:a:moodle:moodle:2.8.6:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "38498617-8E45-4E73-AE9F-C7A0D18FDE47" }, { "criteria": "cpe:2.3:a:moodle:moodle:2.8.7:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C9047769-BFF4-42DB-8B19-F6D16FA910A1" }, { "criteria": "cpe:2.3:a:moodle:moodle:2.8.8:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "73A75ACE-FED2-4830-B259-744ABF25463E" }, { "criteria": "cpe:2.3:a:moodle:moodle:2.8.9:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F04EBA18-DFFF-4529-B647-98191325663B" }, { "criteria": "cpe:2.3:a:moodle:moodle:2.8.10:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A3A746AB-5D58-4196-962A-D22454C3550B" }, { "criteria": "cpe:2.3:a:moodle:moodle:2.9.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C9224D94-1C48-468C-A39B-B2694ED178F4" }, { "criteria": "cpe:2.3:a:moodle:moodle:2.9.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "1C7EE9AD-E122-4288-9416-6D8F8790D75D" }, { "criteria": "cpe:2.3:a:moodle:moodle:2.9.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C4FC2CC1-787B-480F-BC41-538CE2507CB7" }, { "criteria": "cpe:2.3:a:moodle:moodle:2.9.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "098BADF2-C1D3-406E-9E79-E25483178C99" }, { "criteria": "cpe:2.3:a:moodle:moodle:2.9.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "611B027A-38D6-445E-BFA9-FA68524147DB" }, { "criteria": "cpe:2.3:a:moodle:moodle:3.0.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "8C22EB95-6D8F-45F8-A000-795E259CF06D" }, { "criteria": "cpe:2.3:a:moodle:moodle:3.0.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "65FE0DC7-131E-4ED1-9CFF-70C79995A0B9" }, { "criteria": "cpe:2.3:a:moodle:moodle:3.0.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "80B3EEF9-F300-461F-9407-0FFB3E3CD421" } ], "operator": "OR" } ] } ]