CVE-2024-47853

An issue was discovered in Mahara 23.04.8 and 24.04.4. Attackers may utilize escalation of privileges in certain cases when logging into Mahara with Learning Tools Interoperability (LTI).
References
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:mahara:mahara:*:*:*:*:*:*:*:*
cpe:2.3:a:mahara:mahara:*:*:*:*:*:*:*:*

History

22 Sep 2025, 16:15

Type Values Removed Values Added
CWE CWE-269

05 Sep 2025, 17:03

Type Values Removed Values Added
CPE cpe:2.3:a:mahara:mahara:*:*:*:*:*:*:*:*
References () https://mahara.org/interaction/forum/topic.php?id=9594 - () https://mahara.org/interaction/forum/topic.php?id=9594 - Vendor Advisory
References () https://www.mahara.org - () https://www.mahara.org - Product
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 8.8
CWE NVD-CWE-noinfo
First Time Mahara
Mahara mahara

29 Aug 2025, 16:22

Type Values Removed Values Added
Summary
  • (es) Se detectó un problema en Mahara 23.04.8 y 24.04.4. Los atacantes podrían usar la escalada de privilegios en ciertos casos al iniciar sesión en Mahara con Learning Tools Interoperability (LTI).

26 Aug 2025, 14:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-08-26 14:15

Updated : 2025-09-22 16:15


NVD link : CVE-2024-47853

Mitre link : CVE-2024-47853

CVE.ORG link : CVE-2024-47853


JSON object : View

Products Affected

mahara

  • mahara
CWE
NVD-CWE-noinfo CWE-269

Improper Privilege Management