plone.app.users in Plone 4.0 and 4.1 allows remote authenticated users to modify the properties of arbitrary accounts via unspecified vectors, as exploited in the wild in June 2011.
Metrics
Affected Vendors & Products
Advisories
Source | ID | Title |
---|---|---|
![]() |
EUVD-2011-0021 | plone.app.users in Plone 4.0 and 4.1 allows remote authenticated users to modify the properties of arbitrary accounts via unspecified vectors, as exploited in the wild in June 2011. |
![]() |
GHSA-2qx8-589j-gcpx | Plone and plone.app.users allow remote authenticated users to modify the properties of arbitrary accounts |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Wed, 28 May 2025 15:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
References |
Thu, 22 May 2025 04:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
References |

Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2024-08-06T22:46:00.933Z
Reserved: 2011-05-09T00:00:00
Link: CVE-2011-1950

No data.

Status : Deferred
Published: 2011-06-06T19:55:02.190
Modified: 2025-04-11T00:51:21.963
Link: CVE-2011-1950


No data.