Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:4516
HistoryJul 03, 2017 - 6:52 p.m.

Information Disclosure

2017-07-0318:52:27
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
14

EPSS

0.001

Percentile

36.1%

Moodle is vulnerable to information disclosure. Authenticated users can obtain sensitive information through a request for all course feedback within a specific time frame. This can happen because mod/feedback/lib.php doesn’t check the mod/feedback:view before displaying recent feedback.

EPSS

0.001

Percentile

36.1%