Safety vulnerability ID: 35490
The information on this page was manually curated by our Cybersecurity Intelligence Team.
Products/CMFPlone/FactoryTool.py in Plone 3.3 through 4.3.2 allows remote attackers to obtain the installation path via vectors related to a file object for unspecified documentation which is initialized in class scope.
Latest version: 6.1.1
The Plone Content Management System
Products/CMFPlone/FactoryTool.py in Plone 3.3 through 4.3.2 allows remote attackers to obtain the installation path via vectors related to a file object for unspecified documentation which is initialized in class scope.
MLIST:[oss-security] 20131210 CVE request for Plone: http://www.openwall.com/lists/oss-security/2013/12/10/15
MLIST:[oss-security] 20131211 Re: CVE request for Plone: http://www.openwall.com/lists/oss-security/2013/12/12/3
CONFIRM:https://plone.org/security/20131210/path-leak: https://plone.org/security/20131210/path-leak
Scan your Python project for dependency vulnerabilities in two minutes
Scan your application