Lucene search

K
ubuntucveUbuntu.comUB:CVE-2009-4301
HistoryDec 16, 2009 - 12:00 a.m.

CVE-2009-4301

2009-12-1600:00:00
ubuntu.com
ubuntu.com
6

CVSS2

6

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

SINGLE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:S/C:P/I:P/A:P

EPSS

0.004

Percentile

72.6%

mnet/lib.php in Moodle 1.8 before 1.8.11 and 1.9 before 1.9.7, when MNET
services are enabled, does not properly check permissions, which allows
remote authenticated servers to execute arbitrary MNET functions.

CVSS2

6

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

SINGLE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:S/C:P/I:P/A:P

EPSS

0.004

Percentile

72.6%