PT-2019-6737 · Moodle · Moodle

Frédéric Hoogstoel

·

Published

2019-11-14

·

Updated

2019-11-22

·

CVE-2012-1155

CVSS v2.0

5.0

Medium

VectorAV:N/AC:L/Au:N/C:P/I:N/A:N
Name of the Vulnerable Software and Affected Versions Moodle (affected versions not specified)
Description The issue concerns a database activity export permission problem. Specifically, the export function of the database activity module exports all entries, including those from groups the user does not belong to.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Information Disclosure

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2012-1155

Affected Products

Moodle