AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2019-3848

MEDIUM · CVSS 4.3 EPSS 0.92%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2019-03-26 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2019-3848
Severity
MEDIUM
CVSS
4.3
EPSS
0.92%

Original NVD Description

A vulnerability was found in moodle before versions 3.6.3, 3.5.5 and 3.4.8. Permissions were not correctly checked before loading event information into the calendar's edit event modal popup, so logged in non-guest users could view unauthorised calendar events. (Note: It was read-only access, users could not edit the events.)