Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2013-2079

Опубликовано: 25 мая 2013
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 4

Описание

mod/assign/locallib.php in the assignment module in Moodle 2.3.x before 2.3.7 and 2.4.x before 2.4.4 does not consider capability requirements during the processing of ZIP assignment-archive download (aka downloadall) requests, which allows remote authenticated users to read other users' assignments by leveraging the student role.

РелизСтатусПримечание
devel

not-affected

2.2.6.dfsg-1
lucid

not-affected

1.9.4.dfsg-0ubuntu4
precise

not-affected

1.9.9.dfsg2-6
quantal

not-affected

2.2.3.dfsg-2.3
raring

not-affected

2.2.6.dfsg-1
upstream

released

2.5, 2.4.4, 2.3.7

Показывать по

EPSS

Процентиль: 58%
0.00364
Низкий

4 Medium

CVSS2

Связанные уязвимости

nvd
около 12 лет назад

mod/assign/locallib.php in the assignment module in Moodle 2.3.x before 2.3.7 and 2.4.x before 2.4.4 does not consider capability requirements during the processing of ZIP assignment-archive download (aka downloadall) requests, which allows remote authenticated users to read other users' assignments by leveraging the student role.

debian
около 12 лет назад

mod/assign/locallib.php in the assignment module in Moodle 2.3.x befor ...

github
около 3 лет назад

mod/assign/locallib.php in the assignment module in Moodle 2.3.x before 2.3.7 and 2.4.x before 2.4.4 does not consider capability requirements during the processing of ZIP assignment-archive download (aka downloadall) requests, which allows remote authenticated users to read other users' assignments by leveraging the student role.

EPSS

Процентиль: 58%
0.00364
Низкий

4 Medium

CVSS2