Looking for the vulnerability index of Invicti's legacy products?
Moodle Exposure of Resource to Wrong Sphere Vulnerability (CVE-2017-7490) - Vulnerability Database

Moodle Exposure of Resource to Wrong Sphere Vulnerability (CVE-2017-7490)

Description

In Moodle 2.x and 3.x, searching of arbitrary blogs is possible because a capability check is missing.

References

Related Vulnerabilities