Moodle Improper Access Control Vulnerability - CVE-2016-3729 - Vulnerability Database

Moodle Improper Access Control Vulnerability - CVE-2016-3729

Medium
Reference: CVE-2016-3729
Title: Moodle Improper Access Control Vulnerability
Overview:

The user editing form in Moodle 3.0 through 3.0.3 2.9 through 2.9.5 2.8 through 2.8.11 2.7 through 2.7.13 and earlier allows remote authenticated users to edit profile fields locked by the administrator.