Moodle Permissions Privileges and Access Controls Vulnerability - CVE-2012-6102 - Vulnerability Database

Moodle Permissions Privileges and Access Controls Vulnerability - CVE-2012-6102

Medium
Reference: CVE-2012-6102
Title: Moodle Permissions Privileges and Access Controls Vulnerability
Overview:

lib.php in the Submission comments plugin in the Assignment module in Moodle 2.3.x before 2.3.4 and 2.4.x before 2.4.1 allows remote attackers to read or modify the submission comments (aka feedback comments) of arbitrary users via a crafted URI.