Description
mod/forum/user.php in Moodle 1.9.x before 1.9.16 allows remote authenticated users to obtain the names and other details of arbitrary user accounts by searching for posts.
Remediation
References
Related Vulnerabilities
Liferay Portal Incorrect Default Permissions Vulnerability (CVE-2022-41414)
WordPress 4.1.x Multiple Vulnerabilities (4.1 - 4.1.31)
Drupal Core 4.5.x Mail Header Injection (4.5.0 - 4.5.7)
Oracle JRE Uncontrolled Resource Consumption Vulnerability (CVE-2026-21945)
MyBB Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2016-9414)