CVE-2012-1169
Publication date 14 November 2019
Last updated 25 August 2025
Ubuntu priority
Cvss 3 Severity Score
Description
Moodle before 2.2.2 has Personal information disclosure, when administrative setting users name display is set to first name only full names are shown in page breadcrumbs. Versions 2.2 to 2.2.1+, 2.1 to 2.1.4+, 2.0 to 2.0.7+ affected.
Status
| Package | Ubuntu Release | Status |
|---|---|---|
| moodle | ||
Patch details
| Package | Patch details |
|---|---|
| moodle |
Severity score breakdown
| Parameter | Value |
|---|---|
| Base score |
|
| Attack vector | Network |
| Attack complexity | Low |
| Privileges required | None |
| User interaction | None |
| Scope | Unchanged |
| Confidentiality | Low |
| Integrity impact | None |
| Availability impact | None |
| Vector | CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N |