CVE Vulnerabilities

CVE-2002-0170

Published: Apr 22, 2002 | Modified: Oct 18, 2016
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

Zope 2.2.0 through 2.5.1 does not properly verify the access for objects with proxy roles, which could allow some users to access documents in violation of the intended configuration.

Affected Software

Name Vendor Start Version End Version
Zope Zope 2.2.0 (including) 2.2.0 (including)
Zope Zope 2.2.1 (including) 2.2.1 (including)
Zope Zope 2.2.2 (including) 2.2.2 (including)
Zope Zope 2.2.3 (including) 2.2.3 (including)
Zope Zope 2.2.4 (including) 2.2.4 (including)
Zope Zope 2.2.5 (including) 2.2.5 (including)
Zope Zope 2.3.0 (including) 2.3.0 (including)
Zope Zope 2.3.1 (including) 2.3.1 (including)
Zope Zope 2.3.2 (including) 2.3.2 (including)
Zope Zope 2.3.3 (including) 2.3.3 (including)
Zope Zope 2.4.0 (including) 2.4.0 (including)
Zope Zope 2.4.1 (including) 2.4.1 (including)
Zope Zope 2.4.2 (including) 2.4.2 (including)
Zope Zope 2.4.3 (including) 2.4.3 (including)
Zope Zope 2.4.4b1 (including) 2.4.4b1 (including)
Zope Zope 2.5.0 (including) 2.5.0 (including)
Zope Zope 2.5.1b1 (including) 2.5.1b1 (including)

References