{"id":"CVE-2014-0215","aliases":[],"url":"https://o3.security/vulnerability/CVE-2014-0215","summary":"Moodle Reveals Student Information Meant To Be Anonymous","details":"The blind-marking implementation in Moodle through 2.3.11, 2.4.x before 2.4.10, 2.5.x before 2.5.6, and 2.6.x before 2.6.3 allows remote authenticated users to de-anonymize student identities by (1) using a screen reader or (2) reading the HTML source.","published":"2022-05-13T01:12:51Z","modified":"2024-12-08T05:24:48.121987Z","cvss":null,"epss":null,"cisaKev":null,"exploitsKnown":0,"affectedPackages":[{"ecosystem":"Packagist","name":"moodle/moodle","fixedVersion":"2.7.0"},{"ecosystem":"Packagist","name":"moodle/moodle","fixedVersion":"2.5.6"},{"ecosystem":"Packagist","name":"moodle/moodle","fixedVersion":"2.4.10"}],"fix":null,"references":[{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2014-0215"},{"type":"WEB","url":"https://moodle.org/mod/forum/discuss.php?d=260363"},{"type":"WEB","url":"http://openwall.com/lists/oss-security/2014/05/19/1"}],"provenance":{"sources":["OSV.dev","FIRST.org (EPSS)"],"lastVerified":"2024-12-08T05:24:48.121987Z"}}