Description
A flaw was found in Moodle in versions 3.11 to 3.11.3, 3.10 to 3.10.7, 3.9 to 3.9.10 and earlier unsupported versions. A remote code execution risk when restoring backup files was identified.
Remediation
References
Related Vulnerabilities
Moodle Permissions, Privileges, and Access Controls Vulnerability (CVE-2014-7837)
Oracle Database Server CVE-2007-2110 Vulnerability (CVE-2007-2110)
MySQL Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2006-0369)
WordPress Plugin Wordspew 'id' Parameter SQL Injection (1.16)
MyBB Improper Input Validation Vulnerability (CVE-2008-4930)