Description
mod/forum/user.php in Moodle 1.9.x before 1.9.16 allows remote authenticated users to obtain the names and other details of arbitrary user accounts by searching for posts.
Remediation
References
Related Vulnerabilities
WordPress Plugin NextGEN Gallery-WordPress Gallery Cross-Site Scripting (2.2.10)
WordPress 4.7.x PHP Object Injection (4.7 - 4.7.20)
WordPress Plugin Easy PayPal Gift Certificate Multiple Vulnerabilities (1.2.3)
Moodle Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2012-1161)
WordPress Plugin Marketo Forms and Tracking Cross-Site Request Forgery (1.0.2)