7.5
CVSSv2

CVE-2001-1278

Published: 10/10/2001 Updated: 10/09/2008
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Zope prior to 2.2.4 allows partially trusted users to bypass security controls for certain methods by accessing the methods through the fmt attribute of dtml-var tags.

Vulnerable Product Search on Vulmon Subscribe to Product

zope zope 2.2.4

zope zope 2.2.0

zope zope 2.2.1

zope zope 2.2.2

zope zope 2.2.3