01642 06 11 11 Arrange Call

Email Address Enumeration Vulnerability in Moodle 3.x

CVE-2017-15110 · MEDIUM

CVE-2017-15110

In Moodle 3.x, students can find out email addresses of other students in the same course. Using search on the Participants page, students could search email addresses of all participants regardless of email visibility. This allows enumerating and guessing emails of other students.

Learn more about our Web Application Penetration Testing UK.