CVE-2011-4309

Moodle <2.0.5, <2.1.2 - Auth Bypass

Title source: llm
STIX 2.1

Description

Moodle 2.0.x before 2.0.5 and 2.1.x before 2.1.2 allows remote attackers to bypass intended access restrictions and perform global searches by leveraging the guest role and making a direct request to a URL.

References (3)

Core 3

Scores

EPSS 0.0021
EPSS Percentile 42.9%

Details

CWE
CWE-264
Status published
Products (7)
moodle/moodle 2.0.0
moodle/moodle 2.0.1
moodle/moodle 2.0.2
moodle/moodle 2.0.3
moodle/moodle 2.0.4
moodle/moodle 2.1.0
moodle/moodle 2.1.1
Published Jul 11, 2012
Tracked Since Feb 18, 2026