Unrated severityNVD Advisory· Published Sep 19, 2012· Updated Jun 16, 2026
CVE-2012-4403
CVE-2012-4403
Description
theme/yui_combo.php in Moodle 2.3.x before 2.3.2 does not properly construct error responses for the drag-and-drop script, which allows remote attackers to obtain the installation path by sending a request for a nonexistent resource and then reading the response.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3Patches
Vulnerability mechanics
References
2- moodle.org/mod/forum/discuss.phpnvdVendor Advisory
- openwall.com/lists/oss-security/2012/09/17/1nvd
News mentions
0No linked articles in our index yet.