Moodle Login Bypass via Open-Session Folder
Hi,
Moodle login screen can bypass via hijacked(taken from session folder) sessionID.
Here is google dork: inurl:”/moodledata/sessions”
google link: https://www.google.com/#q=inurl:%22/moodledata/sessions%22
POC:
https://drive.google.com/file/d/0B-LWHbwdK3P9SGtqSEppSG1JREU/view?usp=sharing
https://drive.google.com/file/d/0B-LWHbwdK3P9aW55a1hSY3ozVE0/view?usp=sharing
Ticketing Link : https://tracker.moodle.org/browse/MDL-51345