Safety vulnerability ID: 35666
The information on this page was manually curated by our Cybersecurity Intelligence Team.
Plone 4.0 through 5.1a1 does not have security declarations for Dexterity content-related WebDAV requests, which allows remote attackers to gain webdav access via unspecified vectors.
Latest version: 6.1.1
The Plone Content Management System
Plone 4.0 through 5.1a1 does not have security declarations for Dexterity content-related WebDAV requests, which allows remote attackers to gain webdav access via unspecified vectors.
MLIST:[oss-security] 20160419 Re: CVE Request: Privilege escalation in webdav - Plone: http://www.openwall.com/lists/oss-security/2016/04/20/1
CONFIRM:https://plone.org/security/hotfix/20160419/privilege-escalation-in-webdav: https://plone.org/security/hotfix/20160419/privilege-escalation-in-webdav
Scan your Python project for dependency vulnerabilities in two minutes
Scan your application