CVE-2012-1157: Incorrect Default Permissions
(updated )
Moodle before 2.2.2 has a default repository capabilities issue where all repositories are viewable by all users by default
References
- lists.fedoraproject.org/pipermail/package-announce/2012-April/077635.html
- lists.fedoraproject.org/pipermail/package-announce/2012-April/078209.html
- lists.fedoraproject.org/pipermail/package-announce/2012-April/078210.html
- lists.fedoraproject.org/pipermail/package-announce/2012-May/080712.html
- lists.fedoraproject.org/pipermail/package-announce/2012-May/081047.html
- access.redhat.com/security/cve/cve-2012-1157
- bugzilla.redhat.com/show_bug.cgi?id=CVE-2012-1157
- github.com/advisories/GHSA-2x36-7xfm-pgm7
- github.com/moodle/moodle/commit/246c2cb8e5af71a7d7c605b8fc9f9563e0fb3bc4
- moodle.org/mod/forum/discuss.php?d=198624
- nvd.nist.gov/vuln/detail/CVE-2012-1157
- security-tracker.debian.org/tracker/CVE-2012-1157
Detect and mitigate CVE-2012-1157 with GitLab Dependency Scanning
Secure your software supply chain by verifying that all open source dependencies used in your projects contain no disclosed vulnerabilities. Learn more about Dependency Scanning →