CVE-2011-4293

Moodle <2.0.4-2.1.1 - Info Disclosure

Title source: llm
STIX 2.1

Description

The theme implementation in Moodle 2.0.x before 2.0.4 and 2.1.x before 2.1.1 triggers duplicate caching of Cascading Style Sheets (CSS) and JavaScript content, which allows remote attackers to bypass intended access restrictions and write to an operating-system temporary directory via unspecified vectors.

References (3)

Core 3

Scores

EPSS 0.0019
EPSS Percentile 41.0%

Details

CWE
CWE-264
Status published
Products (6)
moodle/moodle 2.0.0
moodle/moodle 2.0.1
moodle/moodle 2.0.2
moodle/moodle 2.0.3
moodle/moodle 2.1.0
moodle/moodle 2.0 - 2.0.4Packagist
Published Jul 16, 2012
Tracked Since Feb 18, 2026