Description
Zope before 2.13.19, as used in Plone before 4.2.3 and 4.3 before beta 1, does not reseed the pseudo-random number generator (PRNG), which makes it easier for remote attackers to guess the value via unspecified vectors. NOTE: this issue was SPLIT from CVE-2012-5508 due to different vulnerability types (ADT2).
Remediation
References
Related Vulnerabilities
WordPress Plugin All-In-One Security (AIOS)-Security and Firewall Multiple Vulnerabilities (4.1.2)
WordPress Plugin Essential Real Estate Cross-Site Scripting (1.7.1)
Joomla Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2008-5671)
WordPress Plugin Booking Calendar Cross-Site Request Forgery (4.1.5)