Security Advisory
CVE-2016-2190
5.3
MEDIUM
Vulnerability Description
Moodle through 2.6.11, 2.7.x before 2.7.13, 2.8.x before 2.8.11, 2.9.x before 2.9.5, and 3.0.x before 3.0.3 does not properly restrict links, which allows remote attackers to obtain sensitive URL information by reading a Referer log.
Published Date
May 22, 2016
Official Source
NIST NVD Advisory