PublicDate: 2006-09-23 00:07:00 UTC Candidate: CVE-2006-4937 References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-4937 Description: lib/setup.php in Moodle before 1.6.2 sets the error reporting level to 7 to display E_WARNING messages to users even if debugging is disabled, which might allow remote authenticated users to obtain sensitive information by triggering the messages. Ubuntu-Description: Notes: Bugs: Priority: low Discovered-by: Assigned-to: CVSS: upstream_moodle: released (1.6.2) dapper_moodle: ignored (reached end-of-life) edgy_moodle: not-affected (1.6.2-1ubuntu1.1) feisty_moodle: not-affected (1.6.3-2ubuntu1) gutsy_moodle: not-affected (1.8.2-1) hardy_moodle: not-affected (1.8.2-1) intrepid_moodle: not-affected (1.8.2-1) jaunty_moodle: not-affected (1.8.2-1) karmic_moodle: not-affected (1.8.2-1) devel_moodle: not-affected (1.8.2-1)