Moodle CVE-2016-8643 Privilege Escalation Vulnerability

description-logoDescription

Normally in Moodle web interface non-admin users with capability to edit other users can not edit information about admins, this was not respected in one of the web services. This can only be a security vulnerability if this WS was exposed to some external service; it is not exposed to the mobile app

affected-products-logoAffected Applications

Moodle

CVE References

CVE-2016-8643