Improper Access Restriction in Moodle File Browser Component

Improper Access Restriction in Moodle File Browser Component

CVE-2011-4300 · MEDIUM Severity

AV:N/AC:L/AU:N/C:P/I:N/A:N

The file_browser component in Moodle 2.0.x before 2.0.5 and 2.1.x before 2.1.2 does not properly restrict access to category and course data, which allows remote attackers to obtain potentially sensitive information via a request for a file.

Learn more about our Web Application Penetration Testing UK.