CVSS2
Attack Vector
NETWORK
Attack Complexity
LOW
Authentication
SINGLE
Confidentiality Impact
PARTIAL
Integrity Impact
NONE
Availability Impact
NONE
AV:N/AC:L/Au:S/C:P/I:N/A:N
AI Score
Confidence
Low
EPSS
Percentile
45.6%
Moodle 1.9.x before 1.9.15, 2.0.x before 2.0.6, and 2.1.x before 2.1.3 does not properly handle user/action_redir group messages, which allows remote authenticated users to discover e-mail addresses by visiting the messaging interface.
Vendor | Product | Version | CPE |
---|---|---|---|
moodle | moodle | 1.9.5 | cpe:/a:moodle:moodle:1.9.5::: |
moodle | moodle | 1.9.11 | cpe:/a:moodle:moodle:1.9.11::: |
moodle | moodle | 1.9.3 | cpe:/a:moodle:moodle:1.9.3::: |
moodle | moodle | 1.9.14 | cpe:/a:moodle:moodle:1.9.14::: |
moodle | moodle | 1.9.6 | cpe:/a:moodle:moodle:1.9.6::: |
moodle | moodle | 1.9.7 | cpe:/a:moodle:moodle:1.9.7::: |
moodle | moodle | 1.9.8 | cpe:/a:moodle:moodle:1.9.8::: |
moodle | moodle | 1.9.10 | cpe:/a:moodle:moodle:1.9.10::: |
moodle | moodle | 1.9.12 | cpe:/a:moodle:moodle:1.9.12::: |
moodle | moodle | 1.9.13 | cpe:/a:moodle:moodle:1.9.13::: |
More