Lucene search

K
cvelistRedhatCVELIST:CVE-2011-4585
HistoryJul 20, 2012 - 10:00 a.m.

CVE-2011-4585

2012-07-2010:00:00
redhat
www.cve.org
1

6.2 Medium

AI Score

Confidence

Low

0.004 Low

EPSS

Percentile

72.2%

login/change_password.php in Moodle 1.9.x before 1.9.15 does not use https for the change-password form even if the httpslogin option is enabled, which allows remote attackers to obtain credentials by sniffing the network.

6.2 Medium

AI Score

Confidence

Low

0.004 Low

EPSS

Percentile

72.2%