Loading...
Loading...
auth/ldap/ntlmsso_attempt.php in Moodle 2.0.x before 2.0.10, 2.1.x before 2.1.7, 2.2.x before 2.2.4, and 2.3.x before 2.3.1 redirects users from an https LDAP login URL to an http URL, which allows remote attackers to obtain sensitive information by sniffing the network.
July 23, 2012
April 29, 2026
See which npm, PyPI, Go, and Maven packages are affected by CVE-2012-3394
EchelonGraph automatically scans your cloud infrastructure and maps CVE exposure using blast radius analysis.