Vulnerabilities
Vulnerable Software
Fedoraproject:  >> Fedora  >> 16  Security Vulnerabilities
An access bypass issue was found in Drupal 7.x before version 7.5. If a Drupal site has the ability to attach File upload fields to any entity type in the system or has the ability to point individual File upload fields to the private file directory in comments, and the parent node is denied access, non-privileged users can still download the file attached to the comment if they know or guess its direct URL.
CVSS Score
7.5
EPSS Score
0.004
Published
2019-11-15
Moodle before 2.2.2 has an external enrolment plugin context check issue where capability checks are not thorough
CVSS Score
7.5
EPSS Score
0.005
Published
2019-11-14
Moodle before 2.2.2 has a default repository capabilities issue where all repositories are viewable by all users by default
CVSS Score
4.3
EPSS Score
0.006
Published
2019-11-14
Moodle before 2.2.2 has a course information leak in gradebook where users are able to see hidden grade items in export
CVSS Score
4.3
EPSS Score
0.009
Published
2019-11-14
Moodle before 2.2.2: Overview report allows users to see hidden courses
CVSS Score
4.3
EPSS Score
0.009
Published
2019-11-14
Moodle before 2.2.2 has a permission issue in Forum Subscriptions where unenrolled users can subscribe/unsubscribe via mod/forum/index.php
CVSS Score
2.7
EPSS Score
0.007
Published
2019-11-14
Moodle before 2.2.2: Course information leak via hidden courses being displayed in tag search results
CVSS Score
4.3
EPSS Score
0.009
Published
2019-11-14
Moodle before 2.2.2 has Personal information disclosure, when administrative setting users name display is set to first name only full names are shown in page breadcrumbs.
CVSS Score
5.3
EPSS Score
0.01
Published
2019-11-14
Moodle has a database activity export permission issue where the export function of the database activity module exports all entries even those from groups the user does not belong to
CVSS Score
7.5
EPSS Score
0.013
Published
2019-11-14
Moodle before 2.2.2 has users' private files included in course backups
CVSS Score
7.5
EPSS Score
0.012
Published
2019-11-14


Contact Us

Shodan ® - All rights reserved