CVE Vulnerabilities

CVE-2002-0170

Published: Apr 22, 2002 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Zope 2.2.0 through 2.5.1 does not properly verify the access for objects with proxy roles, which could allow some users to access documents in violation of the intended configuration.

Affected Software

NameVendorStart VersionEnd Version
ZopeZope2.2.0 (including)2.2.0 (including)
ZopeZope2.2.1 (including)2.2.1 (including)
ZopeZope2.2.2 (including)2.2.2 (including)
ZopeZope2.2.3 (including)2.2.3 (including)
ZopeZope2.2.4 (including)2.2.4 (including)
ZopeZope2.2.5 (including)2.2.5 (including)
ZopeZope2.3.0 (including)2.3.0 (including)
ZopeZope2.3.1 (including)2.3.1 (including)
ZopeZope2.3.2 (including)2.3.2 (including)
ZopeZope2.3.3 (including)2.3.3 (including)
ZopeZope2.4.0 (including)2.4.0 (including)
ZopeZope2.4.1 (including)2.4.1 (including)
ZopeZope2.4.2 (including)2.4.2 (including)
ZopeZope2.4.3 (including)2.4.3 (including)
ZopeZope2.4.4b1 (including)2.4.4b1 (including)
ZopeZope2.5.0 (including)2.5.0 (including)
ZopeZope2.5.1b1 (including)2.5.1b1 (including)
Red Hat Powertools 7.0RedHat*
Red Hat Powertools 7.1RedHat*

References