Moodle · Moodle · CVE-2012-1156
**Name of the Vulnerable Software and Affected Versions**
Moodle versions prior to 2.2.2
Moodle version 2.1.5
Moodle version 2.0.8
**Description**
The issue concerns the unnecessary inclusion of users' private files in course backups. This affects the confidentiality of user data.
**Recommendations**
For versions prior to 2.2.2, update to version 2.2.2 or later to exclude private files from course backups.
For version 2.1.5, update to a version that excludes private files from course backups, such as version 2.1.6 or later, if available.
For version 2.0.8, update to a version that excludes private files from course backups, such as version 2.0.9 or later, if available.