CVE-2012-2359

Moodle <2.0.9, <2.1.6, <2.2.3 - Privilege Escalation

Title source: llm
STIX 2.1

Description

admin/roles/override.php in Moodle 2.0.x before 2.0.9, 2.1.x before 2.1.6, and 2.2.x before 2.2.3 allows remote authenticated users to gain privileges by leveraging the teacher role and modifying their own capabilities, as demonstrated by obtaining the backup:userinfo capability.

References (2)

Core 2

Scores

EPSS 0.0039
EPSS Percentile 60.3%

Details

CWE
CWE-264
Status published
Products (18)
moodle/moodle 2.0.0
moodle/moodle 2.0.1
moodle/moodle 2.0.2
moodle/moodle 2.0.3
moodle/moodle 2.0.4
moodle/moodle 2.0.5
moodle/moodle 2.0.6
moodle/moodle 2.0.7
moodle/moodle 2.0.8
moodle/moodle 2.1.0
... and 8 more
Published Jul 21, 2012
Tracked Since Feb 18, 2026