Moodle Exposure of Sensitive Information to an Unauthorized Actor Vulnerability - CVE-2013-1832 - Vulnerability Database

Moodle Exposure of Sensitive Information to an Unauthorized Actor Vulnerability - CVE-2013-1832

Medium
Reference: CVE-2013-1832
Title: Moodle Exposure of Sensitive Information to an Unauthorized Actor Vulnerability
Overview:

repository/webdav/lib.php in Moodle 2.x through 2.1.10 2.2.x before 2.2.8 2.3.x before 2.3.5 and 2.4.x before 2.4.2 includes the WebDAV password in the configuration form which allows remote authenticated administrators to obtain sensitive information by configuring an instance.