CVE-2013-4195 Information

Description

Multiple open redirect vulnerabilities in (1) marmoset_patch.py (2) publish.py and (3) principiaredirect.py in Plone 2.1 through 4.1 4.2.x through 4.2.5 and 4.3.x through 4.3.1 allow remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via unspecified vectors.

Reference

http://plone.org/products/plone/security/advisories/20130618-announcement http://plone.org/products/plone-hotfix/releases/20130618 http://seclists.org/oss-sec/2013/q3/261 https://bugzilla.redhat.com/show_bug.cgi?id=978471

Share on: