Moodle Improper Privilege Management Vulnerability - CVE-2019-3849 - Vulnerability Database

Moodle Improper Privilege Management Vulnerability - CVE-2019-3849

High
Reference: CVE-2019-3849
Title: Moodle Improper Privilege Management Vulnerability
Overview:

A vulnerability was found in moodle before versions 3.6.3 3.5.5 and 3.4.8. Users could assign themselves an escalated role within courses or content accessed via LTI by modifying the request to the LTI publisher site.