Show plain JSON{"configurations": [{"nodes": [{"cpeMatch": [{"criteria": "cpe:2.3:a:moodle:moodle:*:*:*:*:*:*:*:*", "matchCriteriaId": "8F20C403-413B-4474-8E4A-B6E0845F493C", "versionEndIncluding": "1.6.1", "vulnerable": true}, {"criteria": "cpe:2.3:a:moodle:moodle:1.6.0:*:*:*:*:*:*:*", "matchCriteriaId": "680CE396-5F61-409C-A152-4D1E1CB44EA3", "vulnerable": true}], "negate": false, "operator": "OR"}]}], "cveTags": [], "descriptions": [{"lang": "en", "value": "help.php in Moodle before 1.6.2 does not check the existence of certain help files before including them, which might allow remote authenticated users to obtain the path in an error message."}, {"lang": "es", "value": "help.php en Moodle before 1.6.2 no valida la existencia de ciertos ficheros de ayuda antes de incluirlos, lo cual permitir\u00eda a usuarios remotos validados obtener la ruta en un mensaje de error."}], "id": "CVE-2006-4938", "lastModified": "2025-04-03T01:03:51.193", "metrics": {"cvssMetricV2": [{"acInsufInfo": false, "baseSeverity": "MEDIUM", "cvssData": {"accessComplexity": "LOW", "accessVector": "NETWORK", "authentication": "SINGLE", "availabilityImpact": "NONE", "baseScore": 4.0, "confidentialityImpact": "PARTIAL", "integrityImpact": "NONE", "vectorString": "AV:N/AC:L/Au:S/C:P/I:N/A:N", "version": "2.0"}, "exploitabilityScore": 8.0, "impactScore": 2.9, "obtainAllPrivilege": false, "obtainOtherPrivilege": false, "obtainUserPrivilege": false, "source": "nvd@nist.gov", "type": "Primary", "userInteractionRequired": false}]}, "published": "2006-09-23T00:07:00.000", "references": [{"source": "cve@mitre.org", "url": "http://docs.moodle.org/en/Release_notes#Moodle_1.6.2"}, {"source": "af854a3a-2127-422b-91ae-364da2661108", "url": "http://docs.moodle.org/en/Release_notes#Moodle_1.6.2"}], "sourceIdentifier": "cve@mitre.org", "vulnStatus": "Deferred", "weaknesses": [{"description": [{"lang": "en", "value": "NVD-CWE-Other"}], "source": "nvd@nist.gov", "type": "Primary"}]}