SB2012072002 - Multiple vulnerabilities in Moodle



SB2012072002 - Multiple vulnerabilities in Moodle

Published: July 20, 2012 Updated: August 11, 2020

Security Bulletin ID SB2012072002
Severity
Medium
Patch available
YES
Number of vulnerabilities 2
Exploitation vector Remote access
Highest impact Data manipulation

Breakdown by Severity

Medium 100%
  • Low
  • Medium
  • High
  • Critical

Description

This security bulletin contains information about 2 secuirty vulnerabilities.


1) Permissions, Privileges, and Access Controls (CVE-ID: CVE-2011-4588)

The vulnerability allows a remote non-authenticated attacker to manipulate data.

The ip_in_range function in mnet/lib.php in MNET in Moodle 1.9.x before 1.9.15 uses an incorrect data type, which allows remote attackers to bypass intended IP address restrictions via an XMLRPC request.


2) Configuration (CVE-ID: CVE-2011-4585)

The vulnerability allows a remote non-authenticated attacker to gain access to sensitive information.

login/change_password.php in Moodle 1.9.x before 1.9.15 does not use https for the change-password form even if the httpslogin option is enabled, which allows remote attackers to obtain credentials by sniffing the network.


Remediation

Install update from vendor's website.