CVE-2011-2528

Description

Unspecified vulnerability in (1) Zope 2.12.x before 2.12.19 and 2.13.x before 2.13.8, as used in Plone 4.x and other products, and (2) PloneHotfix20110720 for Plone 3.x allows attackers to gain privileges via unspecified vectors, related to a "highly serious vulnerability." NOTE: this vulnerability exists because of an incorrect fix for CVE-2011-0720.

Risk Information

Base Score
4.2
MODERATE
Vector
CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:L/I:N/A:L/E:U/RL:O/RC:C
EPSS Score
Exploitation Probability
0.593

Associated Vulnerability

VulnerabilityOS Platform
Vulnerabilities CVE-2010-2422,CVE-2011-1949,CVE-2011-2528,CVE-2013-7062 are fixed in Python-plone 3.3.6Windows
Vulnerabilities CVE-2011-2528 are fixed in Python-zope2 2.12.19Windows
Vulnerabilities CVE-2011-2528 are fixed in Python-zope2 2.13.8Windows
Vulnerabilities CVE-2010-2422,CVE-2011-1949,CVE-2011-2528,CVE-2013-7062 are fixed in Python-plone for linux 3.3.6Linux
Vulnerabilities CVE-2011-2528 are fixed in Python-zope2 for linux 2.12.19Linux
Vulnerabilities CVE-2011-2528 are fixed in Python-zope2 for linux 2.13.8Linux

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234