Cross-Site Request Forgery Vulnerabilities in Plone CMS from Plone
CVE-2008-0164

Currently unrated

Key Information:

Vendor

Plone

Status
Vendor
CVE Published:
20 March 2008

What is CVE-2008-0164?

Plone CMS versions 3.0.5 and 3.0.6 contain multiple cross-site request forgery (CSRF) vulnerabilities allowing attackers to exploit user sessions. These vulnerabilities enable remote attackers to add arbitrary user accounts through the join_form page and alter group privileges via the prefs_groups_overview page, potentially compromising the security of the affected instances.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.