Description
Moodle 1.8 before 1.8.11 and 1.9 before 1.9.7 stores (1) password hashes and (2) unspecified "secrets" in backup files, which might allow attackers to obtain sensitive information.
Remediation
References
Related Vulnerabilities
WordPress Plugin YAWPP (Yet Another WordPress Petition Plugin) SQL Injection (1.2)
WordPress Plugin Google AdSense Click-Fraud Monitoring Cross-Site Scripting (1.8.6)
Oracle Database Server CVE-2006-1876 Vulnerability (CVE-2006-1876)
ZenCart Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2009-4322)