CVE-2024-23055
MEDIUMDescription
An issue in Plone Docker Official Image 5.2.13 (5221) open-source software allows for remote code execution via improper validation of input by the HOST headers.
Is your site exposed to CVE-2024-23055?
Run a free security scan — no signup, results in seconds.
CVSS v3.1 Score
Affected Products
| Vendor | Product |
|---|---|
| plone | plone_docker_official_image |
References
Frequently Asked Questions
What is CVE-2024-23055? +
How severe is CVE-2024-23055? +
What products are affected by CVE-2024-23055? +
How do I check if I'm vulnerable to CVE-2024-23055? +
Related Vulnerabilities
An issue in Plone Docker Official Image 5.2.13 (5221) open-source software that could allow for remote code execution due to …
Due to incorrect access control in Plone version v6.0.9, remote attackers can view and list all files hosted on the …
The HTTP PUT and DELETE methods are enabled in the Plone official Docker version 5.2.13 (5221), allowing unauthenticated attackers to …
A Cross-Frame Scripting vulnerability has been found on Plone CMS affecting verssion below 6.0.5. An attacker could store a malicious …