Description
Directory traversal vulnerability in repository/filesystem/lib.php in Moodle through 2.2.11, 2.3.x before 2.3.10, 2.4.x before 2.4.7, and 2.5.x before 2.5.3 allows remote authenticated users to read arbitrary files via a .. (dot dot) in a path.
Remediation
References
Related Vulnerabilities
WordPress Plugin WP Statistics Multiple Vulnerabilities (13.1.5)
WordPress Plugin Plugmatter Optin Feature Box Multiple SQL Injection Vulnerabilities (2.0.13)
MySQL CVE-2019-2502 Vulnerability (CVE-2019-2502)
WordPress Plugin DW Mega Menu Cross-Site Request Forgery (1.0.1)
WordPress Plugin Smart Slideshow 'upload.php' Arbitrary File Upload (2.1)