Description
Due to incorrect access control in Plone version v6.0.9, remote attackers can view and list all files hosted on the website via sending a crafted request.
Remediation
References
Related Vulnerabilities
WordPress Plugin Lightbox Photo Gallery Cross-Site Request Forgery (1.0)
Joomla URL Redirection to Untrusted Site ('Open Redirect') Vulnerability (CVE-2022-23798)
Oracle Database Server CVE-2014-4295 Vulnerability (CVE-2014-4295)
WordPress Plugin Spotlight Social Feeds [Block, Shortcode, and Widget] Cross-Site Scripting (1.4.2)
Apache Tomcat Improper Input Validation Vulnerability (CVE-2014-0033)