Details
Cross-site request forgery (CSRF) vulnerability in the forum code in Moodle 1.7 before 1.7.7, 1.8 before 1.8.8, and 1.9 before 1.9.4 allows remote attackers to delete unauthorized forum posts via a link or IMG tag to post.php.Novell Bugzilla entry: 475111 SUSE Security Advisories:
- SUSE-SR:2009:007, published Tue, 24 Mar 2009 16:00:00 +0000
- SUSE-SR:2009:007 , published Tue, 24 Mar 2009 16:00:00 +0000
| Product(s) | Fixed package version(s) | References |
|---|---|---|
| openSUSE 10.3 |
| ZYPP Patch Nr: 6108 SAT Patch Nr: 672 |
| openSUSE 11.0 |
| ZYPP Patch Nr: 6108 SAT Patch Nr: 672 |
| openSUSE 11.0 |
| ZYPP Patch Nr: 6108 SAT Patch Nr: 672 |
| openSUSE 11.1 |
| ZYPP Patch Nr: 6108 SAT Patch Nr: 672 |
| openSUSE 11.1 |
| ZYPP Patch Nr: 6108 SAT Patch Nr: 672 |