CVE-2012-1155

Severity CVSS v4.0:
Pending analysis
Type:
CWE-200 Information Leak / Disclosure
Publication date:
14/11/2019
Last modified:
21/11/2024

Description

Moodle has a database activity export permission issue where the export function of the database activity module exports all entries even those from groups the user does not belong to

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:moodle:moodle:*:*:*:*:*:*:*:* 1.9 (including) 1.9.17 (excluding)
cpe:2.3:a:moodle:moodle:*:*:*:*:*:*:*:* 2.0 (including) 2.0.8 (excluding)
cpe:2.3:a:moodle:moodle:*:*:*:*:*:*:*:* 2.1 (including) 2.1.5 (excluding)
cpe:2.3:a:moodle:moodle:*:*:*:*:*:*:*:* 2.2 (including) 2.2.2 (excluding)
cpe:2.3:o:fedoraproject:fedora:15:*:*:*:*:*:*:*
cpe:2.3:o:fedoraproject:fedora:16:*:*:*:*:*:*:*
cpe:2.3:o:fedoraproject:fedora:17:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux:6.0:*:*:*:*:*:*:*
cpe:2.3:o:debian:debian_linux:6.0:*:*:*:*:*:*:*