Security Advisory

CVE-2022-28986

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2022-05-10 18:51:15
Last updated 2024-08-03 06:10:58
Assigner mitre
State PUBLISHED

Description

LMS Doctor Simple 2 Factor Authentication Plugin For Moodle Affected: 2021072900 has an Insecure direct object references (IDOR) vulnerability, which allows remote attackers to update sensitive records such as email, password and phone number of other user accounts.