plone.app.users in Plone 4.0 and 4.1 allows remote authenticated users to modify the properties of arbitrary accounts via unspecified vectors, as exploited in the wild in June 2011.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2011-0021 | plone.app.users in Plone 4.0 and 4.1 allows remote authenticated users to modify the properties of arbitrary accounts via unspecified vectors, as exploited in the wild in June 2011. |
Github GHSA |
GHSA-2qx8-589j-gcpx | Plone and plone.app.users allow remote authenticated users to modify the properties of arbitrary accounts |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Wed, 28 May 2025 15:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
Thu, 22 May 2025 04:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2024-08-06T22:46:00.933Z
Reserved: 2011-05-09T00:00:00
Link: CVE-2011-1950
No data.
Status : Deferred
Published: 2011-06-06T19:55:02.190
Modified: 2025-04-11T00:51:21.963
Link: CVE-2011-1950
OpenCVE Enrichment
No data.
EUVD
Github GHSA