Moodle Permissions Privileges and Access Controls Vulnerability - CVE-2009-4301
mnet/lib.php in Moodle 1.8 before 1.8.11 and 1.9 before 1.9.7 when MNET services are enabled does not properly check permissions which allows remote authenticated servers to execute arbitrary MNET functions.