MSA-13-0005: Potential phishing attack through URL redirects
Description: | Insufficient filtering of return URLs on some pages was allowing redirects to sites outside Moodle. |
Issue summary: | Open redirect issues |
Severity/Risk: | Minor |
Versions affected: | 2.4, 2.3 to 2.3.3+, 2.2 to 2.2.6+ |
Reported by: | Simon Coggins |
Issue no.: | MDL-35991 |
CVE identifier: | CVE-2012-6101 |
Changes (master): | http://git.moodle.o |