Show filters
63 Total Results
Displaying 61-63 of 63
Sort by:
Attacker Value
Unknown
CVE-2011-1949
Disclosure Date: June 06, 2011 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in the safe_html filter in Products.PortalTransforms in Plone 2.1 through 4.1 allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors, a different vulnerability than CVE-2010-2422.
0
Attacker Value
Unknown
CVE-2011-1950
Disclosure Date: June 06, 2011 (last updated October 04, 2023)
plone.app.users in Plone 4.0 and 4.1 allows remote authenticated users to modify the properties of arbitrary accounts via unspecified vectors, as exploited in the wild in June 2011.
0
Attacker Value
Unknown
CVE-2011-0720
Disclosure Date: February 03, 2011 (last updated October 04, 2023)
Unspecified vulnerability in Plone 2.5 through 4.0, as used in Conga, luci, and possibly other products, allows remote attackers to obtain administrative access, read or create arbitrary content, and change the site skin via unknown vectors.
0