6.8
CVSSv2

CVE-2011-4587

Published: 20/07/2012 Updated: 13/02/2023
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
VMScore: 605
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

lib/moodlelib.php in Moodle 1.9.x prior to 1.9.15, 2.0.x prior to 2.0.6, and 2.1.x prior to 2.1.3 does not properly handle certain zero values in the password policy, which makes it easier for remote malicious users to obtain access by leveraging the possible existence of user accounts that have unchangeable blank passwords.

Vulnerable Product Search on Vulmon Subscribe to Product

moodle moodle 2.0.2

moodle moodle 1.9.4

moodle moodle 1.9.1

moodle moodle 1.9.6

moodle moodle 1.9.9

moodle moodle 2.0.1

moodle moodle 1.9.11

moodle moodle 2.1.2

moodle moodle 2.0.4

moodle moodle 1.9.2

moodle moodle 1.9.12

moodle moodle 1.9.10

moodle moodle 2.0.3

moodle moodle 2.1.1

moodle moodle 1.9.3

moodle moodle 2.0.5

moodle moodle 1.9.13

moodle moodle 1.9.5

moodle moodle 1.9.14

moodle moodle 1.9.8

moodle moodle 1.9.7

moodle moodle 2.0.0

moodle moodle 2.1.0