4.3
CVSSv2

CVE-2011-4303

Published: 11/07/2012 Updated: 13/02/2023
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

lib/db/upgrade.php in Moodle 2.0.x prior to 2.0.5 and 2.1.x prior to 2.1.2 does not set the correct registration_hubs.secret value during installation, which allows remote malicious users to bypass intended access restrictions by leveraging the hubs feature.

Vulnerable Product Search on Vulmon Subscribe to Product

moodle moodle 2.0.2

moodle moodle 2.0.1

moodle moodle 2.0.4

moodle moodle 2.0.3

moodle moodle 2.1.1

moodle moodle 2.0.0

moodle moodle 2.1.0