CVE Database
/

CVE-2004-1425

Back to search

CVE-2004-1425

Published: Feb 12, 2005

Modified: Aug 8, 2024

PUBLISHED

Description

Directory traversal vulnerability in file.php in Moodle 1.4.2 and earlier allows remote attackers to read arbitrary session files for known session IDs via a .. (dot dot) in the file parameter.

VendorProductVersions

n/a

n/a

affected
n/a

References

20041227 Multiple Vulnerabilities in Moodle
mailing-list
x_refsource_BUGTRAQ
12120
vdb-entry
x_refsource_BID
moodle-directory-traversal(18550)
vdb-entry
x_refsource_XF

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now