Open redirect vulnerability in the Calendar set page in Moodle 2.1.x before 2.1.3 allows remote authenticated users to redirect users to arbitrary web sites and conduct phishing attacks via a redirection URL.
| Software | From | Fixed in |
|---|---|---|
moodle / moodle
|
2.1.2 | 2.1.2.x |
moodle / moodle
|
2.1.1 | 2.1.1.x |
moodle / moodle
|
2.1.0 | 2.1.0.x |