Moodle Improper Authentication Vulnerability - CVE-2010-1613
Moodle 1.8.x and 1.9.x before 1.9.8 does not enable the quotRegenerate session id during loginquot setting by default which makes it easier for remote attackers to conduct session fixation attacks.