First published: Wed Jun 26 2013(Updated: )
A security flaw (privilege defined with unsafe actions) was found in the way portrait handling component of Plone, a user friendly and powerful content management system, performed portraits management. Remote attacker, authenticated Plone user could use this flaw to modify or delete portraits of other users.
Affected Software | Affected Version | How to fix |
---|---|---|
Plone CMS |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of REDHAT-BUG-978478 is classified as moderate, due to its potential impact on user permissions.
To fix REDHAT-BUG-978478, it is recommended to apply the latest security patches provided for the Plone CMS.
REHAT-BUG-978478 affects authenticated users of the Plone CMS who can manage portraits.
An attacker exploiting REDHAT-BUG-978478 can potentially modify or delete portraits within the Plone CMS.
Currently, there are no known workarounds for REDHAT-BUG-978478, and updating is the best course of action.