Looking for the vulnerability index of Invicti's legacy products?
Moodle Permissions, Privileges, and Access Controls Vulnerability (CVE-2016-2190) - Vulnerability Database

Moodle Permissions, Privileges, and Access Controls Vulnerability (CVE-2016-2190)

Description

Moodle through 2.6.11, 2.7.x before 2.7.13, 2.8.x before 2.8.11, 2.9.x before 2.9.5, and 3.0.x before 3.0.3 does not properly restrict links, which allows remote attackers to obtain sensitive URL information by reading a Referer log.

References

Related Vulnerabilities