Описание
mod/forum/user.php in Moodle 1.9.x before 1.9.16 allows remote authenticated users to obtain the names and other details of arbitrary user accounts by searching for posts.
Ссылки
- Vendor Advisory
- Vendor Advisory
Уязвимые конфигурации
Конфигурация 1
Одно из
cpe:2.3:a:moodle:moodle:1.9.1:*:*:*:*:*:*:*
cpe:2.3:a:moodle:moodle:1.9.2:*:*:*:*:*:*:*
cpe:2.3:a:moodle:moodle:1.9.3:*:*:*:*:*:*:*
cpe:2.3:a:moodle:moodle:1.9.4:*:*:*:*:*:*:*
cpe:2.3:a:moodle:moodle:1.9.5:*:*:*:*:*:*:*
cpe:2.3:a:moodle:moodle:1.9.6:*:*:*:*:*:*:*
cpe:2.3:a:moodle:moodle:1.9.7:*:*:*:*:*:*:*
cpe:2.3:a:moodle:moodle:1.9.8:*:*:*:*:*:*:*
cpe:2.3:a:moodle:moodle:1.9.9:*:*:*:*:*:*:*
cpe:2.3:a:moodle:moodle:1.9.10:*:*:*:*:*:*:*
cpe:2.3:a:moodle:moodle:1.9.11:*:*:*:*:*:*:*
cpe:2.3:a:moodle:moodle:1.9.12:*:*:*:*:*:*:*
cpe:2.3:a:moodle:moodle:1.9.13:*:*:*:*:*:*:*
cpe:2.3:a:moodle:moodle:1.9.14:*:*:*:*:*:*:*
cpe:2.3:a:moodle:moodle:1.9.15:*:*:*:*:*:*:*
EPSS
Процентиль: 45%
0.00225
Низкий
4 Medium
CVSS2
Дефекты
CWE-200
Связанные уязвимости
ubuntu
почти 13 лет назад
mod/forum/user.php in Moodle 1.9.x before 1.9.16 allows remote authenticated users to obtain the names and other details of arbitrary user accounts by searching for posts.
debian
почти 13 лет назад
mod/forum/user.php in Moodle 1.9.x before 1.9.16 allows remote authent ...
github
около 3 лет назад
mod/forum/user.php in Moodle 1.9.x before 1.9.16 allows remote authenticated users to obtain the names and other details of arbitrary user accounts by searching for posts.
EPSS
Процентиль: 45%
0.00225
Низкий
4 Medium
CVSS2
Дефекты
CWE-200