Moodle Incorrect Permission Assignment for Critical Resource Vulnerability - CVE-2012-1160 - Vulnerability Database

Moodle Incorrect Permission Assignment for Critical Resource Vulnerability - CVE-2012-1160

Low
Reference: CVE-2012-1160
Title: Moodle Incorrect Permission Assignment for Critical Resource Vulnerability
Overview:

Moodle before 2.2.2 has a permission issue in Forum Subscriptions where unenrolled users can subscribe/unsubscribe via mod/forum/index.php