- EPSS 0.71%
- Veröffentlicht 14.11.2019 17:15:12
- Zuletzt bearbeitet 21.11.2024 01:36:33
Moodle before 2.2.2 has a permission issue in Forum Subscriptions where unenrolled users can subscribe/unsubscribe via mod/forum/index.php
CVE-2012-1161
- EPSS 0.95%
- Veröffentlicht 14.11.2019 17:15:12
- Zuletzt bearbeitet 21.11.2024 01:36:33
Moodle before 2.2.2: Course information leak via hidden courses being displayed in tag search results
CVE-2012-1169
- EPSS 0.99%
- Veröffentlicht 14.11.2019 17:15:12
- Zuletzt bearbeitet 21.11.2024 01:36:34
Moodle before 2.2.2 has Personal information disclosure, when administrative setting users name display is set to first name only full names are shown in page breadcrumbs.
CVE-2012-1155
- EPSS 1.27%
- Veröffentlicht 14.11.2019 16:15:14
- Zuletzt bearbeitet 21.11.2024 01:36:33
Moodle has a database activity export permission issue where the export function of the database activity module exports all entries even those from groups the user does not belong to
CVE-2012-1156
- EPSS 1.23%
- Veröffentlicht 14.11.2019 16:15:14
- Zuletzt bearbeitet 21.11.2024 01:36:33
Moodle before 2.2.2 has users' private files included in course backups
CVE-2012-1168
- EPSS 2.22%
- Veröffentlicht 14.11.2019 16:15:14
- Zuletzt bearbeitet 21.11.2024 01:36:34
Moodle before 2.2.2 has a password and web services issue where when the user profile is updated the user password is reset if not specified.
CVE-2019-10186
- EPSS 0.38%
- Veröffentlicht 31.07.2019 22:15:12
- Zuletzt bearbeitet 21.11.2024 04:18:36
A flaw was found in moodle before versions 3.7.1, 3.6.5, 3.5.7. A sesskey (CSRF) token was not being utilised by the XML loading/unloading admin tool.
CVE-2019-10187
- EPSS 0.16%
- Veröffentlicht 31.07.2019 22:15:12
- Zuletzt bearbeitet 21.11.2024 04:18:36
A flaw was found in moodle before versions 3.7.1, 3.6.5, 3.5.7. Users with permission to delete entries from a glossary were able to delete entries from other glossaries they did not have direct access to.
CVE-2019-10188
- EPSS 0.16%
- Veröffentlicht 31.07.2019 22:15:12
- Zuletzt bearbeitet 21.11.2024 04:18:36
A flaw was found in moodle before versions 3.7.1, 3.6.5, 3.5.7. Teachers in a quiz group could modify group overrides for other groups in the same quiz.
CVE-2019-10189
- EPSS 0.16%
- Veröffentlicht 31.07.2019 22:15:12
- Zuletzt bearbeitet 21.11.2024 04:18:36
A flaw was found in moodle before versions 3.7.1, 3.6.5, 3.5.7. Teachers in an assignment group could modify group overrides for other groups in the same assignment.