#VU43833 Permissions, Privileges, and Access Controls in Moodle - CVE-2011-4583
Published: July 20, 2012 / Updated: August 11, 2020
Moodle
moodle.org
Description
The vulnerability allows a remote #AU# to read and manipulate data.
Moodle 2.0.x before 2.0.6 and 2.1.x before 2.1.3 displays web service tokens associated with (1) disabled services and (2) users who no longer have authorization, which allows remote authenticated users to have an unspecified impact by reading these tokens.