lib/adminlib.php in Moodle through 2.3.11, 2.4.x before 2.4.8, 2.5.x before 2.5.4, and 2.6.x before 2.6.1 logs cleartext passwords, which allows remote authenticated administrators to obtain sensitive information by reading the Config Changes Report.
                
            References
                    Configurations
                    Configuration 1 (hide)
| 
 | 
Configuration 2 (hide)
| 
 | 
Configuration 3 (hide)
| 
 | 
Configuration 4 (hide)
| 
 | 
History
                    No history.
Information
                Published : 2014-01-20 15:14
Updated : 2025-04-11 00:51
NVD link : CVE-2014-0008
Mitre link : CVE-2014-0008
CVE.ORG link : CVE-2014-0008
JSON object : View
Products Affected
                moodle
- moodle
CWE
                
                    
                        
                        CWE-255
                        
            Credentials Management Errors
