CVE Vulnerabilities

CVE-2006-4247

Published: Sep 29, 2006 | Modified: Sep 05, 2008
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
6.4 MEDIUM
AV:N/AC:L/Au:N/C:P/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu
UNTRIAGED

Unspecified vulnerability in the Password Reset Tool before 0.4.1 on Plone 2.5 and 2.5.1 Release Candidate allows attackers to reset the passwords of other users, related to an erroneous security declaration.

Affected Software

Name Vendor Start Version End Version
Plone Plone 2.5 (including) 2.5 (including)
Plone Plone 2.5.1_rc (including) 2.5.1_rc (including)
Zope-cmfplone Ubuntu dapper *
Zope-cmfplone Ubuntu edgy *
Zope-cmfplone Ubuntu feisty *
Zope-cmfplone Ubuntu gutsy *
Zope-cmfplone Ubuntu hardy *
Zope-cmfplone Ubuntu intrepid *
Zope-cmfplone Ubuntu upstream *

References