CVE-2009-4298
EUVD-2009-426616.12.2009, 01:30
The LAMS module (mod/lams) for Moodle 1.8 before 1.8.11 and 1.9 before 1.9.7 stores the (1) username, (2) firstname, and (3) lastname fields within the user table, which allows attackers to obtain user account information via unknown vectors.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| moodle | moodle | 1.8.1 |
| moodle | moodle | 1.8.2 |
| moodle | moodle | 1.8.3 |
| moodle | moodle | 1.8.4 |
| moodle | moodle | 1.8.5 |
| moodle | moodle | 1.8.7 |
| moodle | moodle | 1.8.8 |
| moodle | moodle | 1.8.9 |
| moodle | moodle | 1.8.10 |
| moodle | moodle | 1.9.1 |
| moodle | moodle | 1.9.2 |
| moodle | moodle | 1.9.3 |
| moodle | moodle | 1.9.4 |
| moodle | moodle | 1.9.5 |
| moodle | moodle | 1.9.6 |
𝑥
= Vulnerable software versions
Ubuntu Releases
Common Weakness Enumeration
References