Looking for the vulnerability index of Invicti's legacy products?
Plone CMS Incorrect Permission Assignment for Critical Resource Vulnerability (CVE-2021-33509) - Vulnerability Database

Plone CMS Incorrect Permission Assignment for Critical Resource Vulnerability (CVE-2021-33509)

Description

Plone through 5.2.4 allows remote authenticated managers to perform disk I/O via crafted keyword arguments to the ReStructuredText transform in a Python script.

References

Related Vulnerabilities