Page 3 of 13 results (0.003 seconds)

CVSS: 7.5EPSS: 0%CPEs: 17EXPL: 0

Zope 2.2.0 through 2.5.1 does not properly verify the access for objects with proxy roles, which could allow some users to access documents in violation of the intended configuration. Zope 2.2.0 a 2.5.1 no verifica adecuamente el acceso a objetos con perfiles del proxy, lo que podría permitir a algunos usuarios acceder a documentos violando la configuración pretendida. • http://marc.info/?l=bugtraq&m=101503023511996&w=2 http://www.iss.net/security_center/static/8334.php http://www.osvdb.org/5350 http://www.redhat.com/support/errata/RHSA-2002-060.html http://www.securityfocus.com/bid/4229 http://www.zope.org/Products/Zope/hotfixes •

CVSS: 2.1EPSS: 0%CPEs: 1EXPL: 0

Digital Creations Zope 2.3.1 b1 and earlier allows a local attacker (Zope user) with through-the-web scripting capabilities to alter ZClasses class attributes. • http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000382 http://www.debian.org/security/2001/dsa-043 http://www.linux-mandrake.com/en/security/2001/MDKSA-2001-025.php3 http://www.redhat.com/support/errata/RHSA-2001-021.html http://www.zope.org/Products/Zope/Products/Zope/Products/Zope/Hotfix_2001-02-23 •

CVSS: 2.1EPSS: 0%CPEs: 1EXPL: 0

Digital Creations Zope 2.3.1 b1 and earlier contains a problem in the method return values related to the classes (1) ObjectManager, (2) PropertyManager, and (3) PropertySheet. • http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000382 http://www.debian.org/security/2001/dsa-043 http://www.linux-mandrake.com/en/security/2001/MDKSA-2001-025.php3 http://www.redhat.com/support/errata/RHSA-2001-021.html http://www.zope.org/Products/Zope/Products/Zope/Products/Zope/Hotfix_2001-02-23 •