668
VMScore

CVE-2020-7941

Published: 23/01/2020 Updated: 21/07/2021
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

A privilege escalation issue in plone.app.contenttypes in Plone 4.3 up to and including 5.2.1 allows users to PUT (overwrite) some content without needing write permission.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

plone plone

Mailing Lists

We have received CVE numbers from mitreorg Thanks See inline below On 21/01/2020 23:49, Maurits van Rees wrote: CVE-2020-7938 CVE-2020-7936 CVE-2020-7940 CVE-2020-7941 CVE-2020-7939 CVE-2020-7937 -- Maurits van Rees mauritsvanreesorg/ ...