Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2011-4585

Опубликовано: 20 июл. 2012
Источник: debian
EPSS Низкий

Описание

login/change_password.php in Moodle 1.9.x before 1.9.15 does not use https for the change-password form even if the httpslogin option is enabled, which allows remote attackers to obtain credentials by sniffing the network.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
moodlefixed1.9.9.dfsg2-5package

EPSS

Процентиль: 59%
0.00388
Низкий

Связанные уязвимости

ubuntu
почти 13 лет назад

login/change_password.php in Moodle 1.9.x before 1.9.15 does not use https for the change-password form even if the httpslogin option is enabled, which allows remote attackers to obtain credentials by sniffing the network.

nvd
почти 13 лет назад

login/change_password.php in Moodle 1.9.x before 1.9.15 does not use https for the change-password form even if the httpslogin option is enabled, which allows remote attackers to obtain credentials by sniffing the network.

github
около 3 лет назад

login/change_password.php in Moodle 1.9.x before 1.9.15 does not use https for the change-password form even if the httpslogin option is enabled, which allows remote attackers to obtain credentials by sniffing the network.

EPSS

Процентиль: 59%
0.00388
Низкий