Common Vulnerabilities and Exposures assigned an identifier CVE-2011-0720 to the following vulnerability: Name: CVE-2011-0720 URL: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-0720 Assigned: 20110131 Reference: http://plone.org/products/plone/security/advisories/cve-2011-0720 Reference: http://www.securityfocus.com/bid/46102 Reference: http://secunia.com/advisories/43146 Reference: http://xforce.iss.net/xforce/xfdb/65099 Unspecified vulnerability in Plone 2.5 through 4.0 allows remote attackers to obtain administrative access, read or create arbitrary content, and change the site skin via unknown vectors. The hotfix for this issue is available here: http://plone.org/products/plone-hotfix/releases/CVE-2011-0720/ Some Plone components are included in conga, so this flaw may have some impact there.
This issue has been addressed in following products: Red Hat Enterprise Linux 5 Via RHSA-2011:0394 https://rhn.redhat.com/errata/RHSA-2011-0394.html
This issue has been addressed in following products: CLuster Suite for RHEL 4 Via RHSA-2011:0393 https://rhn.redhat.com/errata/RHSA-2011-0393.html
Created luci tracking bugs for this issue Affects: fedora-all [bug 692661]
Created plone tracking bugs for this issue Affects: epel-5 [bug 692662]