CVE-2013-7060
Products/CMFPlone/FactoryTool.py in Plone 3.3 through 4.3.2 allows remote attackers to obtain the installation path via vectors related to a file object for unspecified documentation which is initialized in class scope.
View on NVDSeverity
N/A
EPSS
Probability of exploitation (next 30 days): 0.0046 (0.5%)
Percentile: 63.9%
EPSS: 2026-05-06
Affects
plone:ploneTechnical description
Products/CMFPlone/FactoryTool.py in Plone 3.3 through 4.3.2 allows remote attackers to obtain the installation path via vectors related to a file object for unspecified documentation which is initialized in class scope.
Published: 5/2/2014, 2:55:05 PM
Last modified: 5/6/2026, 10:30:45 PM
References
- http://www.openwall.com/lists/oss-security/2013/12/10/15
- http://www.openwall.com/lists/oss-security/2013/12/12/3
- https://plone.org/security/20131210/path-leak
- http://www.openwall.com/lists/oss-security/2013/12/10/15
- http://www.openwall.com/lists/oss-security/2013/12/12/3
- https://plone.org/security/20131210/path-leak