info
discussion
exploit
solution
references
Moodle Multiple Access Permissions Security Bypass Vulnerabilities
References:
Moodle Homepage
(Moodle)
MSA-12-0013: Database activity export permission issue
(Michael de Raadt)
MSA-12-0014: Password and Web services issue
(Michael de Raadt)
MSA-12-0016: Default repository capabilities issue
(Michael de Raadt)
MSA-12-0017: Personal information leak issue
(Michael de Raadt)
MSA-12-0018: Course information leak in Gradebook export
(Michael de Raadt)
MSA-12-0019: Overview report and hidden course issue
(Michael de Raadt)
MSA-12-0020: Forum subscription permission issue
(Michael de Raadt)
MSA-12-0021: Course information leak through tags
(Michael de Raadt)
MSA-12-0023: External enrolment plugin context check issue
(Michael de Raadt)
Privacy Statement
Copyright 2010, SecurityFocus