6.8
CVSSv2

CVE-2011-4302

Published: 11/07/2012 Updated: 13/02/2023
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
VMScore: 605
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

mnet/xmlrpc/client.php in MNET in Moodle 1.9.x prior to 1.9.14, 2.0.x prior to 2.0.5, and 2.1.x prior to 2.1.2 does not properly process the return value of the openssl_verify function, which allows remote malicious users to bypass validation via a crafted certificate.

Vulnerable Product Search on Vulmon Subscribe to Product

moodle moodle 2.0.2

moodle moodle 1.9.4

moodle moodle 1.9.6

moodle moodle 1.9.9

moodle moodle 2.0.1

moodle moodle 1.9.11

moodle moodle 2.0.4

moodle moodle 1.9.2

moodle moodle 1.9.12

moodle moodle 1.9.10

moodle moodle 2.0.3

moodle moodle 2.1.1

moodle moodle 1.9.3

moodle moodle 1.9.13

moodle moodle 1.9.5

moodle moodle 1.9.8

moodle moodle 1.9.7

moodle moodle 2.0.0

moodle moodle 2.1.0