Description
A flaw was found in Moodle. A remote code execution risk was identified in the Moodle LMS EQUELLA repository. By default, this was only available to teachers and managers on sites with the EQUELLA repository enabled.
Remediation
References
Related Vulnerabilities
WordPress Plugin Safe SVG Cross-Site Scripting (1.9.5)
Opencart Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2011-3763)
Nginx Improper Certificate Validation Vulnerability (CVE-2009-3555)
Moodle Permissions, Privileges, and Access Controls Vulnerability (CVE-2012-3397)