Vulnerability Details CVE-2012-2359
admin/roles/override.php in Moodle 2.0.x before 2.0.9, 2.1.x before 2.1.6, and 2.2.x before 2.2.3 allows remote authenticated users to gain privileges by leveraging the teacher role and modifying their own capabilities, as demonstrated by obtaining the backup:userinfo capability.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.004
EPSS Ranking 59.4%
CVSS Severity
CVSS v2 Score 6.5
Products affected by CVE-2012-2359
-
cpe:2.3:a:moodle:moodle:2.0.0
-
cpe:2.3:a:moodle:moodle:2.0.1
-
cpe:2.3:a:moodle:moodle:2.0.2
-
cpe:2.3:a:moodle:moodle:2.0.3
-
cpe:2.3:a:moodle:moodle:2.0.4
-
cpe:2.3:a:moodle:moodle:2.0.5
-
cpe:2.3:a:moodle:moodle:2.0.6
-
cpe:2.3:a:moodle:moodle:2.0.7
-
cpe:2.3:a:moodle:moodle:2.0.8
-
cpe:2.3:a:moodle:moodle:2.1.0
-
cpe:2.3:a:moodle:moodle:2.1.1
-
cpe:2.3:a:moodle:moodle:2.1.2
-
cpe:2.3:a:moodle:moodle:2.1.3
-
cpe:2.3:a:moodle:moodle:2.1.4
-
cpe:2.3:a:moodle:moodle:2.1.5
-
cpe:2.3:a:moodle:moodle:2.2.0
-
cpe:2.3:a:moodle:moodle:2.2.1
-
cpe:2.3:a:moodle:moodle:2.2.2