CVE-2025-3641

Published Apr 25, 2025

Last updated 2 days ago

Overview

Description
A flaw was found in Moodle. A remote code execution risk was identified in the Moodle LMS Dropbox repository. By default, this was only available to teachers and managers on sites with the Dropbox repository enabled.
Source
patrick@puiterwijk.org
NVD status
Analyzed

Risk scores

CVSS 3.1

Type
Secondary
Base score
8.8
Impact score
5.9
Exploitability score
2.8
Vector string
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Severity
HIGH

Weaknesses

patrick@puiterwijk.org
CWE-94

Social media

Hype score
Not currently trending

Configurations