CVE-2020-7940

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
23/01/2020
Last modified:
24/01/2020

Description

Missing password strength checks on some forms in Plone 4.3 through 5.2.0 allow users to set weak passwords, leading to easier cracking.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:plone:plone:*:*:*:*:*:*:*:* 4.3.0 (including) 5.2.0 (including)