Vulnerability Details CVE-2012-0799
Moodle 2.0.x before 2.0.7 and 2.1.x before 2.1.4, when an anonymous front-page forum is enabled, allows remote attackers to obtain session keys for their sessions by visiting the front page.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.003
EPSS Ranking 51.3%
CVSS Severity
CVSS v2 Score 4.3
Products affected by CVE-2012-0799
-
cpe:2.3:a:moodle:moodle:2.0.0
-
cpe:2.3:a:moodle:moodle:2.0.1
-
cpe:2.3:a:moodle:moodle:2.0.2
-
cpe:2.3:a:moodle:moodle:2.0.3
-
cpe:2.3:a:moodle:moodle:2.0.4
-
cpe:2.3:a:moodle:moodle:2.0.5
-
cpe:2.3:a:moodle:moodle:2.0.6
-
cpe:2.3:a:moodle:moodle:2.1.0
-
cpe:2.3:a:moodle:moodle:2.1.1
-
cpe:2.3:a:moodle:moodle:2.1.2
-
cpe:2.3:a:moodle:moodle:2.1.3