Total vulnerabilities in the database
The webservices functionality in Moodle 2.0.x before 2.0.7, 2.1.x before 2.1.4, and 2.2.x before 2.2.1 allows remote authenticated users to bypass the deleted status and continue using a server via a token.
Software | From | Fixed in |
---|---|---|
moodle / moodle | 2.0 | 2.0.6.x |
moodle / moodle | 2.1 | 2.1.3.x |
moodle / moodle | 2.2.0 | 2.2.0.x |