Vulnerability Description
Unspecified vulnerability in the Calendar export feature in Moodle 1.8 before 1.8.8 and 1.9 before 1.9.4 allows attackers to obtain sensitive information and conduct "brute force attacks on user accounts" via unknown vectors.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Moodle | Moodle | 1.8.1 |
References
- http://lists.opensuse.org/opensuse-security-announce/2009-03/msg00004.html
- http://moodle.org/security/Vendor Advisory
- http://secunia.com/advisories/34418
- http://www.openwall.com/lists/oss-security/2009/02/04/1
- http://lists.opensuse.org/opensuse-security-announce/2009-03/msg00004.html
- http://moodle.org/security/Vendor Advisory
- http://secunia.com/advisories/34418
- http://www.openwall.com/lists/oss-security/2009/02/04/1
FAQ
What is CVE-2009-0501?
CVE-2009-0501 is a vulnerability with a CVSS score of 5.0 (MEDIUM). Unspecified vulnerability in the Calendar export feature in Moodle 1.8 before 1.8.8 and 1.9 before 1.9.4 allows attackers to obtain sensitive information and conduct "brute force attacks on user accou...
How severe is CVE-2009-0501?
CVE-2009-0501 has been rated MEDIUM with a CVSS base score of 5.0/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2009-0501?
Check the references section above for vendor advisories and patch information. Affected products include: Moodle Moodle.