Moodle Improper Input Validation Vulnerability - CVE-2022-35650 - Vulnerability Database

Moodle Improper Input Validation Vulnerability - CVE-2022-35650

High
Reference: CVE-2022-35650
Title: Moodle Improper Input Validation Vulnerability
Overview:

The vulnerability was found in Moodle occurs due to input validation error when importing lesson questions. This insufficient path checks results in arbitrary file read risk. This vulnerability allows a remote attacker to perform directory traversal attacks. The capability to access this feature is only available to teachers managers and admins by default.