Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Armin Ronacher

#47591of 53,638
5.3Total CVSS
Vulnerabilities · 1
PT-2017-16557
5.3
2017-03-23
Plone Foundation · Plone · CVE-2017-5524
**Name of the Vulnerable Software and Affected Versions** Plone versions 4.x through 4.3.11 Plone versions 5.x through 5.0.6 **Description** The issue allows remote attackers to bypass a sandbox protection mechanism and obtain sensitive information. This is achieved by leveraging the Python string format method. **Recommendations** For Plone versions 4.x through 4.3.11, update to a version later than 4.3.11 to resolve the issue. For Plone versions 5.x through 5.0.6, update to a version later than 5.0.6 to resolve the issue.