Description
Authenticated users were able to enumerate other users' names via the learning plans page.
Remediation
References
Related Vulnerabilities
Oracle Database Server CVE-2009-1021 Vulnerability (CVE-2009-1021)
WordPress 4.2.x Multiple Vulnerabilities (4.2 - 4.2.27)
PHP NULL Pointer Dereference Vulnerability (CVE-2018-14884)
WordPress 2.3.3 Directory Traversal Vulnerability (0.6.2 - 2.3.3)
WordPress Plugin Theme Editor Multiple Vulnerabilities (2.1)