Description Moodle before 2.2.2 has users' private files included in course backups Remediation References CVE-2012-1156 Related Vulnerabilities WordPress Plugin Product list Widget for Woocommerce Cross-Site Scripting (1.0) PHP Other Vulnerability (CVE-2007-1890) WordPress Plugin Frontend File Manager Arbitrary File Upload (3.7) WordPress Plugin Connections Business Directory Unspecified Vulnerability (10.4.7) WordPress Plugin Landing Page Builder-Lead Page-Optin Page-Squeeze Page-WordPress Landing Pages Unspecified Vulnerability (1.4.1) Severity High Classification CVE-2012-1156 CWE-532 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N Tags Missing Update Known Vulnerabilities