Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

CVE-2010-1613 (moodle)

BugsAlert Home > CVE-2010-1613 (moodle)
 
 

Moodle 1.8.x and 1.9.x before 1.9.8 does not enable the "Regenerate session id during login" setting by default, which makes it easier for remote attackers to conduct session fixation attacks.




Original Source: http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2010-1613

Learn more about CVE-2010-1613 (moodle)
 
Tags: cve-2010-1613 moodle

Related Items

      CVE-2008-4054 (download_script)

      RedHat: Moderate: kernel security and bug fix update

      Vuln: Microsoft Windows SeImpersonatePrivilege Local Privilege Escalation Vulnerability

      CVE-2009-0568 (windows_2000, windows_2003_server, windows_server, windows_server_2008, windows_v...)

      Trojan-Downloader.VBS.Agent.fo

      CVE-2008-5768 (am_events_module)

      VUPEN - Roxio Creator Image Dimensions Integer Overflow Vulnerability

 

Pixel