Moodle LaTeX Information Disclosure

medium Nessus Plugin ID 36050

Synopsis

The remote web server contains a PHP application that is affected by an information disclosure vulnerability.

Description

The TeX filter included with the installed version of Moodle can be exploited to reveal the contents of files on the remote host, subject to the privileges under which the web server operates.

Solution

Disable the TeX Notation filter, use the included mimetex filter, or configure LaTeX using the more restrictive 'openin_any=p' option.

See Also

https://www.securityfocus.com/archive/1/502231/30/0/threaded

Plugin Details

Severity: Medium

ID: 36050

File Name: moodle_latex_info_disclosure.nasl

Version: 1.22

Type: remote

Family: CGI abuses

Published: 3/30/2009

Updated: 6/6/2024

Configuration: Enable thorough checks

Supported Sensors: Nessus

Enable CGI Scanning: true

Risk Information

VPR

Risk Factor: Low

Score: 3.5

CVSS v2

Risk Factor: Medium

Base Score: 4.3

Temporal Score: 3.4

Vector: CVSS2#AV:N/AC:M/Au:N/C:P/I:N/A:N

Vulnerability Information

CPE: cpe:/a:moodle:moodle

Required KB Items: www/PHP, installed_sw/Moodle

Excluded KB Items: Settings/disable_cgi_scanning

Exploit Available: true

Exploit Ease: Exploits are available

Exploited by Nessus: true

Reference Information

CVE: CVE-2009-1171

BID: 34278

CWE: 20