CVE-2012-1168
3Vexday Risk Score
No sign of exploitation. No public exploitation artifact known so far.
ssvc Trackepss 2.3%
exploitation probability
2.3%top 18% of all CVEs
observed exploitation
nono source reports it
Moodle before 2.2.2 has a password and web services issue where when the user profile is updated the user password is reset if not specified.
Affected products
Moodle · MoodleReferences
http://lists.fedoraproject.org/pipermail/package-announce/2012-April/077635.htmlhttp://lists.fedoraproject.org/pipermail/package-announce/2012-April/078209.htmlhttp://lists.fedoraproject.org/pipermail/package-announce/2012-April/078210.htmlhttp://lists.fedoraproject.org/pipermail/package-announce/2012-May/080712.htmlhttp://lists.fedoraproject.org/pipermail/package-announce/2012-May/081047.htmlhttps://access.redhat.com/security/cve/cve-2012-1168https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2012-1168https://moodle.org/mod/forum/discuss.php?d=198622https://security-tracker.debian.org/tracker/CVE-2012-1168