Lucene search

K
osvGoogleOSV:GHSA-8W48-M6HX-RJW2
HistoryMay 17, 2022 - 5:37 a.m.

Zope Command Execution Vulnerability

2022-05-1705:37:39
Google
osv.dev
7
zope
command execution
vulnerability
plone
python modules

AI Score

7.6

Confidence

Low

EPSS

0.967

Percentile

99.7%

Unspecified vulnerability in Zope 2.12.x and 2.13.x, as used in Plone 4.0.x through 4.0.9, 4.1, and 4.2 through 4.2a2, allows remote attackers to execute arbitrary commands via vectors related to the p_ class in OFS/misc_.py and the use of Python modules.