Moodle Arbitrary File Read via Backup Functionality
Moderate severity
GitHub Reviewed
Published
May 13, 2022
to the GitHub Advisory Database
•
Updated Dec 29, 2023
Package
Affected versions
= 2.4
>= 2.3, <= 2.3.3
>= 2.2, <= 2.2.6
>= 2.1, <= 2.1.9
Patched versions
2.4.1
2.3.4
2.2.7
2.1.10
Description
Published by the National Vulnerability Database
Jan 27, 2013
Published to the GitHub Advisory Database
May 13, 2022
Reviewed
Dec 29, 2023
Last updated
Dec 29, 2023
The moodle1 backup converter in
backup/converter/moodle1/lib.php
in Moodle 2.1.x before 2.1.10, 2.2.x before 2.2.7, 2.3.x before 2.3.4, and 2.4.x before 2.4.1 does not properly validate pathnames, which allows remote authenticated users to read arbitrary files by leveraging the backup-restoration feature.References