CVE-2020-1754EPSS p49.6%
CVE-2020-1754CVE-2020-1754
moodle / moodle
Description
In Moodle before 3.8.2, 3.7.5, 3.6.9 and 3.5.11, users viewing the grade history report without the 'access all groups' capability were not restricted to viewing grades of users within their own groups.
Scoring
| CVSS | 4.3 () |
| Vector | CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N |
| EPSS | 0.66% probability of exploitation · percentile 49.6% · 2026-10-05T12:00:23Z |
| Last modified | 2026-06-23 |