Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:4596
HistoryJul 19, 2017 - 8:04 a.m.

Information Disclosure

2017-07-1908:04:59
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
9

EPSS

0.003

Percentile

69.1%

Moodle is vulnerable to information disclosure. The vulnerability exists because the block_html_pluginfile function in blocks/html/lib.php does not properly check file access linked to HTML blocks on the My Home Page.