CVE-2011-4300
EUVD-2022-341611.07.2012, 10:26
The file_browser component in Moodle 2.0.x before 2.0.5 and 2.1.x before 2.1.2 does not properly restrict access to category and course data, which allows remote attackers to obtain potentially sensitive information via a request for a file.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| moodle | moodle | 2.0.0 |
| moodle | moodle | 2.0.1 |
| moodle | moodle | 2.0.2 |
| moodle | moodle | 2.0.3 |
| moodle | moodle | 2.0.4 |
| moodle | moodle | 2.1.0 |
| moodle | moodle | 2.1.1 |
𝑥
= Vulnerable software versions
Ubuntu Releases
Common Weakness Enumeration
References