CVE Vulnerabilities

CVE-2006-4247

Published: Sep 29, 2006 | Modified: Apr 09, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
6.4 MEDIUM
AV:N/AC:L/Au:N/C:P/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

Unspecified vulnerability in the Password Reset Tool before 0.4.1 on Plone 2.5 and 2.5.1 Release Candidate allows attackers to reset the passwords of other users, related to an erroneous security declaration.

Affected Software

NameVendorStart VersionEnd Version
PlonePlone2.5 (including)2.5 (including)
PlonePlone2.5.1_rc (including)2.5.1_rc (including)
Zope-cmfploneUbuntudapper*
Zope-cmfploneUbuntuedgy*
Zope-cmfploneUbuntufeisty*
Zope-cmfploneUbuntugutsy*
Zope-cmfploneUbuntuhardy*
Zope-cmfploneUbuntuintrepid*
Zope-cmfploneUbuntuupstream*

References