CVE-2020-28734
30.12.2020, 19:15
Plone before 5.2.3 allows XXE attacks via a feature that is explicitly only available to the Manager role.Enginsight
| Vendor | Product | Version |
|---|---|---|
| plone | plone | 𝑥 < 5.2.3 |
𝑥
= Vulnerable software versions
References
Plone before 5.2.3 allows XXE attacks via a feature that is explicitly only available to the Manager role.Enginsight
| Vendor | Product | Version |
|---|---|---|
| plone | plone | 𝑥 < 5.2.3 |