CVE-2020-28734
30.12.2020, 19:15
Plone before 5.2.3 allows XXE attacks via a feature that is explicitly only available to the Manager role.Enginsight
Vendor | Product | Version |
---|---|---|
plone | plone | 𝑥 < 5.2.3 |
𝑥
= Vulnerable software versions
References
Plone before 5.2.3 allows XXE attacks via a feature that is explicitly only available to the Manager role.Enginsight
Vendor | Product | Version |
---|---|---|
plone | plone | 𝑥 < 5.2.3 |