Cross-site scripting (XSS) vulnerability in Zope 2.10.2 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified vectors in a HTTP GET request.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Zope | Zope | * | 2.10.2 (including) |
| Red Hat Enterprise Linux 5 | RedHat | conga-0:0.9.2-6.el5 | * |
| Zope2.9 | Ubuntu | dapper | * |
| Zope2.9 | Ubuntu | edgy | * |
| Zope2.9 | Ubuntu | feisty | * |
| Zope2.9 | Ubuntu | gutsy | * |
| Zope2.9 | Ubuntu | hardy | * |
| Zope2.9 | Ubuntu | intrepid | * |