Description
In Moodle 2.x and 3.x, the question engine allows access to files that should not be available.
Remediation
References
Related Vulnerabilities
Oracle Database Server CVE-2014-4298 Vulnerability (CVE-2014-4298)
Kong Server Uncontrolled Resource Consumption Vulnerability (CVE-2023-44487)
Jboss EAP Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2016-6311)