Description
Unspecified vulnerability in Zope 2.12.x and 2.13.x, as used in Plone 4.0.x through 4.0.9, 4.1, and 4.2 through 4.2a2, allows remote attackers to execute arbitrary commands via vectors related to the p_ class in OFS/misc_.py and the use of Python modules.
Remediation
References
Related Vulnerabilities
Contao Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2019-10642)
WordPress Plugin WP Data Access SQL Injection (4.3.1)
IBM WebSEAL Incorrect Authorization Vulnerability (CVE-2023-38368)
MySQL CVE-2023-22058 Vulnerability (CVE-2023-22058)
WordPress Plugin AddToAny Share Buttons Cross-Site Scripting (1.6.6)