Description
Moodle before 2.2.2 has an external enrolment plugin context check issue where capability checks are not thorough
Remediation
References
Related Vulnerabilities
WordPress Plugin Testimonials Widget Cross-Site Scripting (3.5.1)
WordPress Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2017-5489)
PHP Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2010-1868)
WordPress Plugin Catch Themes Demo Import Unspecified Vulnerability (1.8)