The DocumentTemplate package in Zope 2.2 and earlier allows a remote attacker to modify DTMLDocuments or DTMLMethods without authorization.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Linux_powertools | Redhat | 6.1 (including) | 6.1 (including) |
Linux_powertools | Redhat | 6.2 (including) | 6.2 (including) |
Zope | Zope | 1.10.3 (including) | 1.10.3 (including) |
Zope | Zope | 2.1.1 (including) | 2.1.1 (including) |
Zope | Zope | 2.1.7 (including) | 2.1.7 (including) |