Total vulnerabilities in the database
Moodle 2.0.x before 2.0.6 and 2.1.x before 2.1.3 displays web service tokens associated with (1) disabled services and (2) users who no longer have authorization, which allows remote authenticated users to have an unspecified impact by reading these tokens.
Software | From | Fixed in |
---|---|---|
moodle / moodle | 2.1.2 | 2.1.2.x |
moodle / moodle | 2.1.1 | 2.1.1.x |
moodle / moodle | 2.1.0 | 2.1.0.x |
moodle / moodle | 2.0.2 | 2.0.2.x |
moodle / moodle | 2.0.1 | 2.0.1.x |
moodle / moodle | 2.0.4 | 2.0.4.x |
moodle / moodle | 2.0.3 | 2.0.3.x |
moodle / moodle | 2.0.5 | 2.0.5.x |
moodle / moodle | 2.0.0 | 2.0.0.x |