Описание
The file_browser component in Moodle 2.0.x before 2.0.5 and 2.1.x before 2.1.2 does not properly restrict access to category and course data, which allows remote attackers to obtain potentially sensitive information via a request for a file.
Релиз | Статус | Примечание |
---|---|---|
devel | not-affected | 1.9.9.dfsg2-4 |
hardy | ignored | end of life |
lucid | not-affected | |
maverick | not-affected | |
natty | not-affected | |
oneiric | not-affected | |
upstream | needs-triage |
Показывать по
Ссылки на источники
EPSS
5 Medium
CVSS2
Связанные уязвимости
The file_browser component in Moodle 2.0.x before 2.0.5 and 2.1.x before 2.1.2 does not properly restrict access to category and course data, which allows remote attackers to obtain potentially sensitive information via a request for a file.
The file_browser component in Moodle 2.0.x before 2.0.5 and 2.1.x befo ...
Moodle does not properly restrict access to category and course data
EPSS
5 Medium
CVSS2