Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2013-1829

Опубликовано: 25 мар. 2013
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 4

Описание

calendar/managesubscriptions.php in Moodle 2.4.x before 2.4.2 does not consider capability requirements before displaying calendar subscriptions, which allows remote authenticated users to obtain potentially sensitive information by leveraging the student role.

РелизСтатусПримечание
devel

not-affected

2.2.6.dfsg-1
hardy

ignored

end of life
lucid

not-affected

1.9.4.dfsg-0ubuntu4
oneiric

not-affected

1.9.9.dfsg2-3
precise

not-affected

1.9.9.dfsg2-6
quantal

not-affected

2.2.3.dfsg-2.3
upstream

released

2.4.2

Показывать по

Ссылки на источники

EPSS

Процентиль: 42%
0.00199
Низкий

4 Medium

CVSS2

Связанные уязвимости

nvd
около 12 лет назад

calendar/managesubscriptions.php in Moodle 2.4.x before 2.4.2 does not consider capability requirements before displaying calendar subscriptions, which allows remote authenticated users to obtain potentially sensitive information by leveraging the student role.

debian
около 12 лет назад

calendar/managesubscriptions.php in Moodle 2.4.x before 2.4.2 does not ...

github
около 3 лет назад

calendar/managesubscriptions.php in Moodle 2.4.x before 2.4.2 does not consider capability requirements before displaying calendar subscriptions, which allows remote authenticated users to obtain potentially sensitive information by leveraging the student role.

EPSS

Процентиль: 42%
0.00199
Низкий

4 Medium

CVSS2