Vulnerabilities > Moodle > Moodle > 2.3.0

DATE CVE VULNERABILITY TITLE RISK
2012-07-23 CVE-2012-3387 Permissions, Privileges, and Access Controls vulnerability in Moodle 2.3.0
Moodle 2.3.x before 2.3.1 uses only a client-side check for whether references are permitted in a file upload, which allows remote authenticated users to bypass intended alias (aka shortcut) restrictions via a client that omits this check.
network
low complexity
moodle CWE-264
4.0