Description
Moodle before 2.2.2 has a password and web services issue where when the user profile is updated the user password is reset if not specified.
Remediation
References
Related Vulnerabilities
Moodle Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2020-1692)
Drupal Core 9.2.x Directory Traversal (9.2.0 - 9.2.1)
Drupal Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2012-5652)
Apache HTTP Server Out-of-bounds Read Vulnerability (CVE-2017-7668)