PT-2012-2872 · Moodle · Moodle

Vincent Danen

·

Publicado

2012-07-17

·

Atualizado

2020-12-01

·

CVE-2012-0795

CVSS v2.0

6.5

Média

VetorAV:N/AC:L/Au:S/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Moodle versions 1.9.x through 1.9.15 Moodle versions 2.0.x through 2.0.6 Moodle versions 2.1.x through 2.1.3 Moodle versions 2.2.x through 2.2.0
Description The issue concerns the validation of e-mail address settings. Remote authenticated users can have an unspecified impact via a crafted address.
Recommendations For Moodle versions 1.9.x through 1.9.15, update to version 1.9.16 or later. For Moodle versions 2.0.x through 2.0.6, update to version 2.0.7 or later. For Moodle versions 2.1.x through 2.1.3, update to version 2.1.4 or later. For Moodle versions 2.2.x through 2.2.0, update to version 2.2.1 or later.

Correção

RCE

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2012-0795
DSA-2421-1

Produtos afetados

Moodle