CVE-2012-6100
Publication date 27 January 2013
Last updated 24 July 2024
Ubuntu priority
Description
report/outline/index.php in Moodle 2.2.x before 2.2.7, 2.3.x before 2.3.4, and 2.4.x before 2.4.1 does not properly enforce the moodle/user:viewhiddendetails capability requirement, which allows remote authenticated users to discover a hidden lastaccess value by reading an activity report.
Status
| Package | Ubuntu Release | Status |
|---|---|---|
| moodle | 14.04 LTS trusty | Not in release |
Patch details
| Package | Patch details |
|---|---|
| moodle |