Moodle Permissions Privileges and Access Controls Vulnerability - CVE-2011-4588
The ip_in_range function in mnet/lib.php in MNET in Moodle 1.9.x before 1.9.15 uses an incorrect data type which allows remote attackers to bypass intended IP address restrictions via an XMLRPC request.