VYPR
Unrated severityNVD Advisory· Published Sep 23, 2006· Updated Jun 16, 2026

CVE-2006-4938

CVE-2006-4938

Description

help.php in Moodle before 1.6.2 does not check the existence of certain help files before including them, which might allow remote authenticated users to obtain the path in an error message.

Affected products

3
  • Moodle/Moodle3 versions
    cpe:2.3:a:moodle:moodle:*:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:a:moodle:moodle:*:*:*:*:*:*:*:*range: <=1.6.1
    • cpe:2.3:a:moodle:moodle:1.6.0:*:*:*:*:*:*:*
    • (no CPE)range: <1.6.2

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.