CVE-2023-5546 | Moodle up to 4.0.10/4.1.5/4.2.2 Quiz Grading Report User ID cross site scripting (Nessus ID 261441)
A vulnerability was found in Moodle up to 4.0.10/4.1.5/4.2.2. It has been classified as problematic. The affected element is an unknown function of the component Quiz Grading Report Handler. Performing manipulation of the argument User ID results in cross site scripting.
This vulnerability is cataloged as CVE-2023-5546. It is possible to initiate the attack remotely. There is no exploit available.
Upgrading the affected component is recommended.