CVE-2006-4935: Input Validation
Published Sep 23, 2006
·Updated
The Database module in Moodle before 1.6.2 does not properly handle uploaded files, which has unspecified impact and remote attack vectors.
Affected Software
2 affected components
Moodle moodle<=1.6.1
Moodle moodle=1.6.0
Event History
Sep 23, 2006
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2006-4935?
CVE-2006-4935 is considered to have unspecified impact, allowing for potential remote attacks.
2
How do I fix CVE-2006-4935?
To fix CVE-2006-4935, upgrade Moodle to version 1.6.2 or later.
3
Which versions of Moodle are affected by CVE-2006-4935?
Moodle versions prior to 1.6.2, specifically 1.6.0 and 1.6.1, are affected by CVE-2006-4935.
4
What kind of vulnerability is CVE-2006-4935?
CVE-2006-4935 is a vulnerability related to improper handling of uploaded files in the Database module of Moodle.
5
Is CVE-2006-4935 still a concern for Moodle users?
CVE-2006-4935 is no longer a concern for users who have updated to Moodle version 1.6.2 or later.