CVE-2012-1169
Publication date 14 November 2019
Last updated 25 August 2025
Ubuntu priority
Cvss 3 Severity Score
Moodle before 2.2.2 has Personal information disclosure, when administrative setting users name display is set to first name only full names are shown in page breadcrumbs. Versions 2.2 to 2.2.1+, 2.1 to 2.1.4+, 2.0 to 2.0.7+ affected.
Status
Package | Ubuntu Release | Status |
---|---|---|
moodle | ||
Patch details
Package | Patch details |
---|---|
moodle |
Severity score breakdown
Parameter | Value |
---|---|
Base score |
|
Attack vector | Network |
Attack complexity | Low |
Privileges required | None |
User interaction | None |
Scope | Unchanged |
Confidentiality | Low |
Integrity impact | None |
Availability impact | None |
Vector | CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N |