PYSEC-2006-9

See a problem?
Import Source
https://github.com/pypa/advisory-database/blob/main/vulns/plone/PYSEC-2006-9.yaml
JSON Data
https://api.osv.dev/v1/vulns/PYSEC-2006-9
Aliases
Published
2006-09-29T19:07:00Z
Modified
2026-05-21T15:00:25.403763159Z
Summary
[none]
Details

Unspecified vulnerability in the Password Reset Tool before 0.4.1 on Plone 2.5 and 2.5.1 Release Candidate allows attackers to reset the passwords of other users, related to "an erroneous security declaration."

References

Affected packages

PyPI / plone

Package

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Last affected
2.5
Last affected
2.5.1_rc

Database specific

source
"https://github.com/pypa/advisory-database/blob/main/vulns/plone/PYSEC-2006-9.yaml"