CVE-2022-40315
Description
A limited SQL injection risk was identified in the "browse list of users" site administration page.
CWE
- CWE-89 — CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
Affected
- n/a / moodle — v=4.0 to 4.0.3, 3.11 to 3.11.9, 3.9 to 3.9.16 and earlier unsupported versions [affected]
CVSS
- (none)
References
- https://moodle.org/mod/forum/discuss.php?d=438394 x_refsource_MISC
- https://bugzilla.redhat.com/show_bug.cgi?id=2128150 x_refsource_MISC
Source
cvelistV5-main/cves/2022/40xxx/CVE-2022-40315.json