Описание
Phone information disclosure vulnerability
Due to incorrect access control in Plone version v6.0.9, remote attackers can view and list all files hosted on the website via sending a crafted request.
Пакеты
Наименование
Plone
pip
Затронутые версииВерсия исправления
<= 6.0.9
Отсутствует
Связанные уязвимости
CVSS3: 7.5
nvd
почти 2 года назад
Due to incorrect access control in Plone version v6.0.9, remote attackers can view and list all files hosted on the website via sending a crafted request.