Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-3v28-9jjp-4g5w

Опубликовано: 17 мая 2022
Источник: github
Github: Прошло ревью
CVSS4: 9.3
CVSS3: 9.1

Описание

Plone Privilege Escalation Vulnerability

Unspecified vulnerability in Plone 2.5 through 4.0, as used in Conga, luci, and possibly other products, allows remote attackers to obtain administrative access, read or create arbitrary content, and change the site skin via unknown vectors.

Пакеты

Наименование

Plone

pip
Затронутые версииВерсия исправления

>= 2.5, < 4.0.4

4.0.4

EPSS

Процентиль: 80%
0.01407
Низкий

9.3 Critical

CVSS4

9.1 Critical

CVSS3

Связанные уязвимости

redhat
больше 14 лет назад

Unspecified vulnerability in Plone 2.5 through 4.0, as used in Conga, luci, and possibly other products, allows remote attackers to obtain administrative access, read or create arbitrary content, and change the site skin via unknown vectors.

nvd
больше 14 лет назад

Unspecified vulnerability in Plone 2.5 through 4.0, as used in Conga, luci, and possibly other products, allows remote attackers to obtain administrative access, read or create arbitrary content, and change the site skin via unknown vectors.

debian
больше 14 лет назад

Unspecified vulnerability in Plone 2.5 through 4.0, as used in Conga, ...

oracle-oval
около 14 лет назад

ELSA-2011-0394: conga security update (IMPORTANT)

EPSS

Процентиль: 80%
0.01407
Низкий

9.3 Critical

CVSS4

9.1 Critical

CVSS3