Vulnerability Database

289,784

Total vulnerabilities in the database

CVE-2011-4462

Plone 4.1.3 and earlier computes hash values for form parameters without restricting the ability to trigger hash collisions predictably, which allows remote attackers to cause a denial of service (CPU consumption) by sending many crafted parameters.

CVSS v2:

  • Severity: Medium
  • Score: 5
  • AV:N/AC:L/Au:N/C:N/I:N/A:P

CWEs:

Software From Fixed in
plone / plone - 4.1.3.x
plone / plone 3.3 3.3.x
plone / plone 1.0 1.0.x
plone / plone 4.0.5 4.0.5.x
plone / plone 3.0.1 3.0.1.x
plone / plone 1.0.3 1.0.3.x
plone / plone 3.0 3.0.x
plone / plone 3.2.3 3.2.3.x
plone / plone 3.1.4 3.1.4.x
plone / plone 3.1.5.1 3.1.5.1.x
plone / plone 2.1.4 2.1.4.x
plone / plone 4.0.2 4.0.2.x
plone / plone 3.3.5 3.3.5.x
plone / plone 3.0.6 3.0.6.x
plone / plone 2.5.4 2.5.4.x
plone / plone 3.2 3.2.x
plone / plone 3.1.1 3.1.1.x
plone / plone 2.1.1 2.1.1.x
plone / plone 3.3.4 3.3.4.x
plone / plone 2.0.3 2.0.3.x
plone / plone 1.0.4 1.0.4.x
plone / plone 4.0.7 4.0.7.x
plone / plone 3.3.2 3.3.2.x
plone / plone 2.0 2.0.x
plone / plone 4.0.4 4.0.4.x
plone / plone 3.1.7 3.1.7.x
plone / plone 4.0.9 4.0.9.x
plone / plone 2.5.1 2.5.1.x
plone / plone 4.1 4.1.x
plone / plone 2.5.3 2.5.3.x
plone / plone 3.2.2 3.2.2.x
plone / plone 2.0.4 2.0.4.x
plone / plone 2.1.2 2.1.2.x
plone / plone 1.0.1 1.0.1.x
plone / plone 3.0.3 3.0.3.x
plone / plone 3.3.1 3.3.1.x
plone / plone 3.0.4 3.0.4.x
plone / plone 2.0.1 2.0.1.x
plone / plone 2.0.2 2.0.2.x
plone / plone 3.1.2 3.1.2.x
plone / plone 3.2.1 3.2.1.x
plone / plone 4.0 4.0.x
plone / plone 1.0.2 1.0.2.x
plone / plone 2.0.5 2.0.5.x
plone / plone 4.1.2 4.1.2.x
plone / plone 3.0.5 3.0.5.x
plone / plone 2.5 2.5.x
plone / plone 1.0.6 1.0.6.x
plone / plone 2.5.2 2.5.2.x
plone / plone 4.0.1 4.0.1.x
plone / plone 4.1.1 4.1.1.x
plone / plone 3.0.2 3.0.2.x
plone / plone 2.1 2.1.x
plone / plone 3.1 3.1.x
plone / plone 3.3.6 3.3.6.x
plone / plone 3.3.3 3.3.3.x
plone / plone 2.1.3 2.1.3.x
plone / plone 3.1.6 3.1.6.x
plone / plone 3.1.3 3.1.3.x
plone / plone 4.0.3 4.0.3.x
plone / plone 1.0.5 1.0.5.x
plone / plone 2.5.5 2.5.5.x
plone - 4.1.4