7.5
CVSSv3

CVE-2020-7940

Published: 23/01/2020 Updated: 24/01/2020
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:P/A:N

Vulnerability Summary

Missing password strength checks on some forms in Plone 4.3 up to and including 5.2.0 allow users to set weak passwords, leading to easier cracking.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

plone plone

Mailing Lists

We have received CVE numbers from mitreorg Thanks See inline below On 21/01/2020 23:49, Maurits van Rees wrote: CVE-2020-7938 CVE-2020-7936 CVE-2020-7940 CVE-2020-7941 CVE-2020-7939 CVE-2020-7937 -- Maurits van Rees mauritsvanreesorg/ ...