CVE-2006-4247

Publication date 29 September 2006

Last updated 17 July 2025


Ubuntu priority

Description

Unspecified vulnerability in the Password Reset Tool before 0.4.1 on Plone 2.5 and 2.5.1 Release Candidate allows attackers to reset the passwords of other users, related to “an erroneous security declaration.”

Status

No maintained releases are affected by this CVE.

Package Ubuntu Release Status
zope-cmfplone 9.10 karmic Not in release
9.04 jaunty Not in release
8.10 intrepid
Fixed 2.5.1-1
8.04 LTS hardy
Fixed 2.5.1-1
7.10 gutsy
Fixed 2.5.1-1
7.04 feisty
Fixed 2.5.1-1
6.10 edgy
Fixed 2.5.1-1
6.06 LTS dapper Ignored end of life