Description
lib/setup.php in Moodle before 1.6.2 sets the error reporting level to 7 to display E_WARNING messages to users even if debugging is disabled, which might allow remote authenticated users to obtain sensitive information by triggering the messages.
Remediation
References
Related Vulnerabilities
AngularJS Inefficient Regular Expression Complexity Vulnerability (CVE-2024-21490)
SharePoint CVE-2020-17121 Vulnerability (CVE-2020-17121)
Oracle Database Server CVE-2011-0792 Vulnerability (CVE-2011-0792)
WordPress Plugin WP DSGVO Tools (GDPR) Security Bypass (3.1.23)
PostgreSQL Improper Authentication Vulnerability (CVE-2017-7546)