← back
CVE-2022-35650

CVE-2022-35650

EPSS 49.1%CWE-22
The vulnerability was found in Moodle, occurs due to input validation error when importing lesson questions. This insufficient path checks results in arbitrary file read risk. This vulnerability allows a remote attacker to perform directory traversal attacks. The capability to access this feature is only available to teachers, managers and admins by default.
Affected products
n/a · Moodle

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →