Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
lib/setup.php in Moodle before 1.6.2 sets the error reporting level to 7 to display E_WARNING messages to users even if debugging is disabled, which might allow remote authenticated users to obtain sensitive information by triggering the messages.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Moodle 'lib/setup.php' 敏感信息泄露漏洞
Vulnerability Description
Moodle 1.6.2之前版本中的lib/setup.php,将错误报告级别设置为7,这样即使启用了调试也会向用户显示E_WARNING消息,远程认证的用户通过触发这些消息来获取敏感信息。
CVSS Information
N/A
Vulnerability Type
N/A