Multiple unspecified vulnerabilities in (1) dataitems.py, (2) get.py, and (3) traverseName.py in Plone 2.1 through 4.1, 4.2.x through 4.2.5, and 4.3.x through 4.3.1 allow remote authenticated users with administrator access to a subtree to access nodes above the subtree via unknown vectors.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Plone | Plone | 2.1 (including) | 2.1 (including) |
Plone | Plone | 2.1.1 (including) | 2.1.1 (including) |
Plone | Plone | 2.1.2 (including) | 2.1.2 (including) |
Plone | Plone | 2.1.3 (including) | 2.1.3 (including) |
Plone | Plone | 2.1.4 (including) | 2.1.4 (including) |
Plone | Plone | 2.5 (including) | 2.5 (including) |
Plone | Plone | 2.5.1 (including) | 2.5.1 (including) |
Plone | Plone | 2.5.2 (including) | 2.5.2 (including) |
Plone | Plone | 2.5.3 (including) | 2.5.3 (including) |
Plone | Plone | 2.5.4 (including) | 2.5.4 (including) |
Plone | Plone | 2.5.5 (including) | 2.5.5 (including) |
Plone | Plone | 3.0 (including) | 3.0 (including) |
Plone | Plone | 3.0.1 (including) | 3.0.1 (including) |
Plone | Plone | 3.0.2 (including) | 3.0.2 (including) |
Plone | Plone | 3.0.3 (including) | 3.0.3 (including) |
Plone | Plone | 3.0.4 (including) | 3.0.4 (including) |
Plone | Plone | 3.0.5 (including) | 3.0.5 (including) |
Plone | Plone | 3.0.6 (including) | 3.0.6 (including) |
Plone | Plone | 3.1 (including) | 3.1 (including) |
Plone | Plone | 3.1.1 (including) | 3.1.1 (including) |
Plone | Plone | 3.1.2 (including) | 3.1.2 (including) |
Plone | Plone | 3.1.3 (including) | 3.1.3 (including) |
Plone | Plone | 3.1.4 (including) | 3.1.4 (including) |
Plone | Plone | 3.1.5.1 (including) | 3.1.5.1 (including) |
Plone | Plone | 3.1.6 (including) | 3.1.6 (including) |
Plone | Plone | 3.1.7 (including) | 3.1.7 (including) |
Plone | Plone | 3.2 (including) | 3.2 (including) |
Plone | Plone | 3.2.1 (including) | 3.2.1 (including) |
Plone | Plone | 3.2.2 (including) | 3.2.2 (including) |
Plone | Plone | 3.2.3 (including) | 3.2.3 (including) |
Plone | Plone | 3.3 (including) | 3.3 (including) |
Plone | Plone | 3.3.1 (including) | 3.3.1 (including) |
Plone | Plone | 3.3.2 (including) | 3.3.2 (including) |
Plone | Plone | 3.3.3 (including) | 3.3.3 (including) |
Plone | Plone | 3.3.4 (including) | 3.3.4 (including) |
Plone | Plone | 3.3.5 (including) | 3.3.5 (including) |
Plone | Plone | 4.0 (including) | 4.0 (including) |
Plone | Plone | 4.0.1 (including) | 4.0.1 (including) |
Plone | Plone | 4.0.2 (including) | 4.0.2 (including) |
Plone | Plone | 4.0.3 (including) | 4.0.3 (including) |
Plone | Plone | 4.0.4 (including) | 4.0.4 (including) |
Plone | Plone | 4.0.5 (including) | 4.0.5 (including) |
Plone | Plone | 4.0.6.1 (including) | 4.0.6.1 (including) |
Plone | Plone | 4.1 (including) | 4.1 (including) |