Description In Moodle 3.x, course creators are able to change system default settings for courses. Remediation References CVE-2017-7532 Related Vulnerabilities Oracle Application Server Credentials Management Errors Vulnerability (CVE-2004-1366) CrushFTP Server Improper Validation of Integrity Check Value Vulnerability (CVE-2023-48795) ClipBucket Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2012-6642) PHP Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') Vulnerability (CVE-2008-2665) MySQL CVE-2019-2910 Vulnerability (CVE-2019-2910) Severity Medium Classification CVE-2017-7532 CWE-269 CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N Tags Missing Update Known Vulnerabilities