Security Advisory

CVE-2009-4304

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2009-12-16 01:00:00
Last updated 2024-09-17 01:16:08
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

Moodle 1.8 before 1.8.11 and 1.9 before 1.9.7 does not use a random password salt in config.php, which makes it easier for attackers to conduct brute-force password guessing attacks.