CVE-2013-1829
Publication date 11 March 2013
Last updated 24 July 2024
Ubuntu priority
calendar/managesubscriptions.php in Moodle 2.4.x before 2.4.2 does not consider capability requirements before displaying calendar subscriptions, which allows remote authenticated users to obtain potentially sensitive information by leveraging the student role.
Status
Package | Ubuntu Release | Status |
---|---|---|
moodle | ||
Notes
Patch details
Package | Patch details |
---|---|
moodle |