Lucene search

K
ubuntucveUbuntu.comUB:CVE-2013-1831
HistoryMar 11, 2013 - 12:00 a.m.

CVE-2013-1831

2013-03-1100:00:00
ubuntu.com
ubuntu.com
9

5 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:L/Au:N/C:P/I:N/A:N

0.005 Low

EPSS

Percentile

77.0%

lib/setuplib.php in Moodle through 2.1.10, 2.2.x before 2.2.8, 2.3.x before
2.3.5, and 2.4.x before 2.4.2 allows remote attackers to obtain sensitive
information via an invalid request, which reveals the absolute path in an
exception message.

Notes

Author Note
seth-arnold MSA-13-0013
OSVersionArchitecturePackageVersionFilename
ubuntu18.04noarchmoodle< anyUNKNOWN
ubuntu16.04noarchmoodle< anyUNKNOWN

5 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:L/Au:N/C:P/I:N/A:N

0.005 Low

EPSS

Percentile

77.0%