[38025] in bugtraq
Re: Multiple Vulnerabilities in Moodle
daemon@ATHENA.MIT.EDU (Martin Dougiamas)
Thu Dec 30 17:25:00 2004
Date: 30 Dec 2004 15:25:07 -0000
Message-ID: <20041230152507.8231.qmail@www.securityfocus.com>
Content-Type: text/plain
Content-Disposition: inline
Content-Transfer-Encoding: binary
MIME-Version: 1.0
From: Martin Dougiamas <martin@moodle.com>
To: bugtraq@securityfocus.com
In-Reply-To: <20041227194544.6255.qmail@www.securityfocus.com>
>Session File Disclosure vulnerability is patched in version 1.4.3.
>Cross Site Scripting vulnerability will be patched probably in
>version 1.5.
In fact both of these were fixed in 1.4.3 (the currently available release).