CVE-2022-28986
2 factor authentication
LMS Doctor Simple 2 Factor Authentication Plugin For Moodle Affected: 2021072900 has an Insecure direct object references (IDOR) vulnerability, which allows remote attackers to update sensitive records such as email, password and phone number of other user accounts.
- CVSS
- 7.5
- EPSS
- 2.28% 81.4% percentile
- CISA KEV
- Not listed
- Published
- 2022.05.11