CVE-2022-40208: Medium severity moodle vulnerability
In Moodle, insufficient limitations in some quiz web services made it possible for students to bypass sequential navigation during a quiz attempt.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the vulnerability ID for this Moodle vulnerability?
The vulnerability ID for this Moodle vulnerability is CVE-2022-40208.
What is the title of this vulnerability?
The title of this vulnerability is 'In Moodle insufficient limitations in some quiz web services made it possible for students to bypass…'
What is the description of this vulnerability?
In Moodle, insufficient limitations in some quiz web services made it possible for students to bypass sequential navigation during a quiz attempt.
Which versions of Moodle are affected by this vulnerability?
The versions of Moodle affected by this vulnerability are 3.9.0 to 3.9.16, 3.11.0 to 3.11.9, and 4.0.0 to 4.0.3.
What is the severity level of this vulnerability?
The severity level of this vulnerability is medium with a severity value of 4.3.
How can I fix this Moodle vulnerability?
To fix this Moodle vulnerability, it is recommended to update to the latest version of Moodle (3.9.17, 3.11.10, or 4.0.4) where the issue has been patched.