Loading...
Loading...
files/externallib.php in Moodle through 2.5.9, 2.6.x before 2.6.11, 2.7.x before 2.7.8, and 2.8.x before 2.8.6 does not consider the moodle/user:manageownfiles capability before approving a private-file upload, which allows remote authenticated users to bypass intended file-management restrictions by using web services to perform uploads after this capability has been revoked.
June 1, 2015
May 6, 2026
See which npm, PyPI, Go, and Maven packages are affected by CVE-2015-3181
EchelonGraph automatically scans your cloud infrastructure and maps CVE exposure using blast radius analysis.