First published: Wed Jun 26 2013(Updated: )
A security flaw was found in the way Plone, a user friendly and powerful content management system, enforced immutable setting on certain content edit forms. A remote attacker could use this flaw to provide a specially-crafted URL that would (in a non-persistent way) hide certain fields from these content edit forms, possibly leading to scenario such altered forms to be erroneously accepted by authenticated Plone user as valid.
Affected Software | Affected Version | How to fix |
---|---|---|
Plone CMS |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
REDHAT-BUG-978469 is classified as a security vulnerability that could allow remote attackers to manipulate content in Plone CMS.
To fix REDHAT-BUG-978469, ensure that you apply the latest security patches provided for Plone CMS.
REDHAT-BUG-978469 affects specific versions of Plone CMS, particularly before the security patches were implemented.
Yes, REDHAT-BUG-978469 can potentially lead to data manipulation by unauthorized users, which may affect data integrity.
No, the exploit for REDHAT-BUG-978469 is non-persistent, meaning it does not make permanent changes to the system.