CVE-2012-1159
- EPSS 0.95%
- Veröffentlicht 14.11.2019 17:15:12
- Zuletzt bearbeitet 21.11.2024 01:36:33
Moodle before 2.2.2: Overview report allows users to see hidden courses
- EPSS 0.75%
- Veröffentlicht 14.11.2019 17:15:12
- Zuletzt bearbeitet 21.11.2024 01:36:33
Moodle before 2.2.2 has a permission issue in Forum Subscriptions where unenrolled users can subscribe/unsubscribe via mod/forum/index.php
CVE-2012-1161
- EPSS 0.95%
- Veröffentlicht 14.11.2019 17:15:12
- Zuletzt bearbeitet 21.11.2024 01:36:33
Moodle before 2.2.2: Course information leak via hidden courses being displayed in tag search results
CVE-2012-1169
- EPSS 0.99%
- Veröffentlicht 14.11.2019 17:15:12
- Zuletzt bearbeitet 21.11.2024 01:36:34
Moodle before 2.2.2 has Personal information disclosure, when administrative setting users name display is set to first name only full names are shown in page breadcrumbs.
CVE-2012-1155
- EPSS 1.27%
- Veröffentlicht 14.11.2019 16:15:14
- Zuletzt bearbeitet 21.11.2024 01:36:33
Moodle has a database activity export permission issue where the export function of the database activity module exports all entries even those from groups the user does not belong to
CVE-2012-1156
- EPSS 1.23%
- Veröffentlicht 14.11.2019 16:15:14
- Zuletzt bearbeitet 21.11.2024 01:36:33
Moodle before 2.2.2 has users' private files included in course backups
CVE-2012-1168
- EPSS 2.22%
- Veröffentlicht 14.11.2019 16:15:14
- Zuletzt bearbeitet 21.11.2024 01:36:34
Moodle before 2.2.2 has a password and web services issue where when the user profile is updated the user password is reset if not specified.
CVE-2010-4661
- EPSS 0.15%
- Veröffentlicht 13.11.2019 21:15:11
- Zuletzt bearbeitet 21.11.2024 01:21:27
udisks before 1.0.3 allows a local user to load arbitrary Linux kernel modules.
CVE-2019-18837
- EPSS 0.56%
- Veröffentlicht 13.11.2019 20:15:10
- Zuletzt bearbeitet 21.11.2024 04:33:40
An issue was discovered in crun before 0.10.5. With a crafted image, it doesn't correctly check whether a target is a symlink, resulting in access to files outside of the container. This occurs in libcrun/linux.c and libcrun/chroot_realpath.c.
CVE-2010-4177
- EPSS 0.07%
- Veröffentlicht 12.11.2019 23:15:10
- Zuletzt bearbeitet 21.11.2024 01:20:22
mysql-gui-tools (mysql-query-browser and mysql-admin) before 5.0r14+openSUSE-2.3 exposes the password of a user connected to the MySQL server in clear text form via the list of running processes.