CVE-2012-1156: High severity moodle vulnerability
Moodle before 2.2.2 has users' private files included in course backups
Other sources
Moodle before 2.2.2, 2.1.5, and 2.0.8 had users' private files included in course backups unnecessarily.
Affected Software
Remediation
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is CVE-2012-1156?
CVE-2012-1156 is a vulnerability in Moodle before 2.2.2 where users' private files are included in course backups unnecessarily.
How does CVE-2012-1156 affect Moodle?
CVE-2012-1156 affects Moodle versions before 2.2.2, 2.1.5, and 2.0.8.
What is the severity of CVE-2012-1156?
CVE-2012-1156 has a severity rating of 7.5 (high).
How can I fix CVE-2012-1156?
To fix CVE-2012-1156, you should upgrade Moodle to version 2.2.2, 2.1.5, or 2.0.8, depending on your currently installed version.
Where can I find more information about CVE-2012-1156?
More information about CVE-2012-1156 can be found at the following references: [NVD](https://nvd.nist.gov/vuln/detail/CVE-2012-1156), [Red Hat](https://access.redhat.com/security/cve/cve-2012-1156), [Bugzilla](https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2012-1156).