Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2014-0216
Description:The My Home implementation in the block_html_pluginfile function in blocks/html/lib.php in Moodle through 2.3.11, 2.4.x before 2.4.10, 2.5.x before 2.5.6, and 2.6.x before 2.6.3 does not properly restrict file access, which allows remote attackers to obtain sensitive information by visiting an HTML block.
Test IDs: None available
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2014-0216
[oss-security] 20140519 Moodle security notifications public
http://openwall.com/lists/oss-security/2014/05/19/1
http://git.moodle.org/gw?p=moodle.git&a=search&h=HEAD&st=commit&s=MDL-43877
http://git.moodle.org/gw?p=moodle.git&a=search&h=HEAD&st=commit&s=MDL-43877
https://moodle.org/mod/forum/discuss.php?d=260364
https://moodle.org/mod/forum/discuss.php?d=260364




© 1998-2025 E-Soft Inc. All rights reserved.