First published: Thu Nov 14 2019(Updated: )
Moodle before 2.2.2 has a password and web services issue where when the user profile is updated the user password is reset if not specified.
Credit: secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
debian/moodle | ||
Moodle Moodle | <2.2.2 | |
Fedora | =15 | |
Fedora | =16 | |
Fedora | =17 | |
Red Hat Enterprise Linux | =6.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2012-1168 is rated as medium severity due to the risk of user passwords being reset unintentionally.
To address CVE-2012-1168, upgrade to Moodle version 2.2.2 or later.
CVE-2012-1168 affects Moodle versions prior to 2.2.2.
Yes, CVE-2012-1168 can lead to unintentional password changes, affecting user account access.
CVE-2012-1168 impacts Moodle installations on Fedora 15, 16, 17 and Red Hat Enterprise Linux 6.0.