CVE-2012-0797: Moodle
Medium severity, CVSS 5.5. EPSS: 1.1% chance of exploitation in the next 30 days.
The webservices functionality in Moodle 2.0.x before 2.0.7, 2.1.x before 2.1.4, and 2.2.x before 2.2.1 allows remote authenticated users to bypass the deleted status and continue using a server via a token.
Affected products
- Moodle Moodle: from 2.0, up to and including 2.0.6; from 2.1, up to and including 2.1.3; version 2.2.0 only
Published 2012-07-17. Last modified 2026-06-16.