CVE-2012-1160
Summary
| CVE | CVE-2012-1160 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2019-11-14 17:15:00 UTC |
| Updated | 2019-11-18 15:13:00 UTC |
| Description | Moodle before 2.2.2 has a permission issue in Forum Subscriptions where unenrolled users can subscribe/unsubscribe via mod/forum/index.php |
Risk And Classification
Problem Types: CWE-732
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Operating System | Fedoraproject | Fedora | 15 | All | All | All |
| Operating System | Fedoraproject | Fedora | 16 | All | All | All |
| Operating System | Fedoraproject | Fedora | 17 | All | All | All |
| Operating System | Fedoraproject | Fedora | 15 | All | All | All |
| Operating System | Fedoraproject | Fedora | 16 | All | All | All |
| Operating System | Fedoraproject | Fedora | 17 | All | All | All |
| Application | Moodle | Moodle | All | All | All | All |
| Application | Moodle | Moodle | All | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| CVE-2012-1160 | MISC | security-tracker.debian.org | Third Party Advisory |
| [SECURITY] Fedora 17 Update: moodle-2.2.2-2.fc17 | MISC | lists.fedoraproject.org | Third Party Advisory |
| [SECURITY] Fedora 17 Update: moodle-2.2.2-1.fc17 | MISC | lists.fedoraproject.org | Third Party Advisory |
| Red Hat Customer Portal | MISC | access.redhat.com | Broken Link |
| Moodle.org: MSA-12-0020: Forum subscription permission issue | CONFIRM | moodle.org | Patch, Vendor Advisory |
| [SECURITY] Fedora 16 Update: moodle-2.0.8-1.fc16 | MISC | lists.fedoraproject.org | Third Party Advisory |
| 809223 – (CVE-2012-1155, CVE-2012-1156, CVE-2012-1157, CVE-2012-1158, CVE-2012-1159, CVE-2012-1160, CVE-2012-1161, CVE-2012-1168, CVE-2012-1169, CVE-2012-1170) CVE-2012-1155 CVE-2012-1156 CVE-2012-1157 CVE-2012-1158 CVE-2012-1159 CVE-2012-1160 CVE-2012-1161 CVE-2012-1168 CVE-2012-1169 CVE-2012-1170 moodle: multiple security fixes in 2.2.2, 2.1.5, 2.0.8, 1.9.17 | MISC | bugzilla.redhat.com | Issue Tracking, Patch, Third Party Advisory |
| [SECURITY] Fedora 16 Update: moodle-2.0.8-2.fc16 | MISC | lists.fedoraproject.org | Third Party Advisory |
| [SECURITY] Fedora 15 Update: moodle-1.9.17-1.fc15 | MISC | lists.fedoraproject.org | Third Party Advisory |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.