CVE-2017-5524
medium
CVSS v3
4.3
CVSS v2
4.0
VIR risk
4.3
Description
Plone 4.x through 4.3.11 and 5.x through 5.0.6 allow remote attackers to bypass a sandbox protection mechanism and obtain sensitive information by leveraging the Python string format method.
Predictions
Exploit likelihood
53%
Patch ETA
—
Heuristic predictions, AS-IS, for prioritization only.
Mitigations
Vendor advisory: cve@mitre.org — https://plone.org/security/hotfix/20170117/sandbox-escape
Vendor advisory: cve@mitre.org — http://www.openwall.com/lists/oss-security/2017/01/18/6
Application impact
| Vendor | Product | Versions | Fixed |
|---|---|---|---|
| plone | plone | 4.0 | |
| plone | plone | 4.0.1 | |
| plone | plone | 4.0.2 | |
| plone | plone | 4.0.3 | |
| plone | plone | 4.0.4 | |
| plone | plone | 4.0.5 | |
| plone | plone | 4.0.7 | |
| plone | plone | 4.0.8 | |
| plone | plone | 4.0.9 | |
| plone | plone | 4.0.10 | |
| plone | plone | 4.1 | |
| plone | plone | 4.1.1 | |
| plone | plone | 4.1.2 | |
| plone | plone | 4.1.3 | |
| plone | plone | 4.1.4 | |
| plone | plone | 4.1.5 | |
| plone | plone | 4.1.6 | |
| plone | plone | 4.2 | |
| plone | plone | 4.2.1 | |
| plone | plone | 4.2.2 | |
| plone | plone | 4.2.3 | |
| plone | plone | 4.2.4 | |
| plone | plone | 4.2.5 | |
| plone | plone | 4.2.6 | |
| plone | plone | 4.2.7 | |
| plone | plone | 4.3 | |
| plone | plone | 4.3.1 | |
| plone | plone | 4.3.2 | |
| plone | plone | 4.3.3 | |
| plone | plone | 4.3.4 | |
| plone | plone | 4.3.5 | |
| plone | plone | 4.3.6 | |
| plone | plone | 4.3.7 | |
| plone | plone | 4.3.8 | |
| plone | plone | 4.3.9 | |
| plone | plone | 4.3.10 | |
| plone | plone | 4.3.11 | |
| plone | plone | 5.0 | |
| plone | plone | 5.0.1 | |
| plone | plone | 5.0.2 | |
| plone | plone | 5.0.3 | |
| plone | plone | 5.0.4 | |
| plone | plone | 5.0.5 | |
| plone | plone | 5.0.6 | |
| plone | plone | 5.1 | |
References
- http://www.openwall.com/lists/oss-security/2017/01/18/6
- http://www.securityfocus.com/bid/95679
- https://plone.org/security/hotfix/20170117/sandbox-escape
- https://nvd.nist.gov/vuln/detail/CVE-2017-5524
- https://github.com/plone/Products.CMFPlone/pull/1912
- https://github.com/plone/Products.CMFPlone/commit/a7d47692058e10ce89968e7ca4dacbdf44fcad4f
- https://github.com/advisories/GHSA-p5wr-vp8g-q5p4
- https://github.com/pypa/advisory-database/tree/main/vulns/plone/PYSEC-2017-81.yaml
CWEs
CWE-134
Verify integrity in audit chain (admin only). AS-IS.