5
CVSSv2

CVE-2013-7060

Published: 02/05/2014 Updated: 30/06/2014
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

Products/CMFPlone/FactoryTool.py in Plone 3.3 up to and including 4.3.2 allows remote malicious users to obtain the installation path via vectors related to a file object for unspecified documentation which is initialized in class scope.

Vulnerable Product Search on Vulmon Subscribe to Product

plone plone 4.0.5

plone plone 4.0.4

plone plone 4.0.3

plone plone 4.0.2

plone plone 4.2.1

plone plone 4.2.2

plone plone 4.2.3

plone plone 4.2.4

plone plone 4.1.4

plone plone 4.1.5

plone plone 3.3.4

plone plone 3.3.3

plone plone 3.3.2

plone plone 3.3.1

plone plone 4.1

plone plone 4.3.1

plone plone 4.3.2

plone plone 4.1.6

plone plone 4.0.9

plone plone 4.0

plone plone 3.3.5

plone plone 4.1.2

plone plone 4.2

plone plone 4.2.5

plone plone 4.2.7

plone plone 3.3

plone plone 4.0.7

plone plone 4.0.1

plone plone 3.3.6

plone plone 4.1.1

plone plone 4.1.3

plone plone 4.2.6

plone plone 4.3

Vendor Advisories

Products/CMFPlone/FactoryToolpy in Plone 33 through 432 allows remote attackers to obtain the installation path via vectors related to a file object for unspecified documentation which is initialized in class scope ...