4
CVSSv2

CVE-2008-5102

Published: 17/11/2008 Updated: 01/09/2009
CVSS v2 Base Score: 4 | Impact Score: 2.9 | Exploitability Score: 8
VMScore: 405
Vector: AV:N/AC:L/Au:S/C:N/I:N/A:P

Vulnerability Summary

PythonScripts in Zope 2 2.11.2 and previous versions, as used in Conga and other products, allows remote authenticated users to cause a denial of service (resource consumption or application halt) via certain (1) raise or (2) import statements.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

zope zope 2.10.3-final

zope zope 2.10.2-final

zope zope 2.10.5

zope zope 2.9.0-final

zope zope 2.9.6

zope zope 2.9.5

zope zope 2.8.0-final

zope zope 2.8.0-b2

zope zope 2.8.7

zope zope 2.8.6

zope zope 2.7.6-final

zope zope 2.7.6-b2

zope zope 2.7.4-c1

zope zope 2.7.4-b2

zope zope 2.7.1-b2

zope zope 2.7.1-b1

zope zope 2.7.0-b1

zope zope 2.7.0-a1

zope zope 2.6.2.b4

zope zope 2.6.2.b3

zope zope 2.6.4

zope zope 2.6.3

zope zope 2.5.0b1

zope zope 2.5.0a2

zope zope 2.4.3

zope zope 2.4.2b1

zope zope 2.4.1b1

zope zope 2.4.2

zope zope 2.4.1

zope zope 2.3.1b1

zope zope 2.3.0b3

zope zope 2.3.0

zope zope 2.2.5b1

zope zope 2.2.0a1

zope zope 2.2.5

zope zope 2.1.0b1

zope zope 2.1.6

zope zope 2.0.0b5

zope zope 2.0.0b4

zope zope 2.10.2-b1

zope zope 2.10.0-final

zope zope 2.9.0-b2

zope zope 2.9.0-b1

zope zope 2.9.4

zope zope 2.9.3

zope zope 2.8.0-b1

zope zope 2.8.0-a2

zope zope 2.8.5

zope zope 2.8.4

zope zope 2.7.6-b1

zope zope 2.7.5-final

zope zope 2.7.4-b1

zope zope 2.7.3-final

zope zope 2.7.3-b2

zope zope 2.7.0-final

zope zope 2.7.0-c2

zope zope 2.7.9

zope zope 2.7.8

zope zope 2.6.2.b2

zope zope 2.6.2.b1

zope zope 2.6.1.b1

zope zope 2.6.2

zope zope 2.6.1

zope zope 2.5.0a1

zope zope 2.5.1

zope zope 2.4.0b3

zope zope 2.4.0b2

zope zope 2.4.0

zope zope 2.3.3b1

zope zope 2.3.0b2

zope zope 2.3.0b1

zope zope 2.2.4b1

zope zope 2.2.1b1

zope zope 2.2.4

zope zope 2.2.3

zope zope 2.1.5

zope zope 2.1.4

zope zope 2.0.0a4

zope zope 2.0.1

zope zope 2.11.0

zope zope 2.10.4-final

zope zope 2.10.0-b1

zope zope 2.10.7

zope zope 2.10.6

zope zope 2.9.8

zope zope 2.9.7

zope zope 2.8.1-final

zope zope 2.8.1-b1

zope zope 2.8.9

zope zope 2.8.8

zope zope 2.7.7-final

zope zope 2.7.7-b1

zope zope 2.7.4-final

zope zope 2.7.4-c2

zope zope 2.7.2-c1

zope zope 2.7.1-final

zope zope 2.7.0-b3

zope zope 2.7.0-b2

zope zope 2.6.2.b6

zope zope 2.6.2.b5

zope zope 2.6.0b1

zope zope 2.6.0a1

zope zope 2.5.1b1

zope zope 2.4.4

zope zope 2.4.3b1

zope zope 2.3.1b3

zope zope 2.3.1b2

zope zope 2.3.3

zope zope 2.3.2

zope zope 2.3.1

zope zope 2.2.0b2

zope zope 2.2.0b1

zope zope 2.2.0

zope zope 2.1.0b2

zope zope 2.1.0

zope zope 2.0.0b6

zope zope 1.10.4

zope zope

zope zope 2.11.1

zope zope 2.10.0-c1

zope zope 2.10.0-b2

zope zope 2.9.10

zope zope 2.9.9

zope zope 2.9.2

zope zope 2.9.1

zope zope 2.8.0-a1

zope zope 2.8.10

zope zope 2.8.9.1

zope zope 2.8.3

zope zope 2.8.2

zope zope 2.7.5-c1

zope zope 2.7.5-b1

zope zope 2.7.3-b1

zope zope 2.7.2-final

zope zope 2.7.0-c1

zope zope 2.7.0-b4

zope zope 2.6.0b2

zope zope 2.6.0

zope zope 2.5.1b2

zope zope 2.5.0

zope zope 2.4.4b1

zope zope 2.4.0b1

zope zope 2.4.0a1

zope zope 2.3.2b2

zope zope 2.3.2b1

zope zope 2.3.0a2

zope zope 2.3.0a1

zope zope 2.2.0b4

zope zope 2.2.0b3

zope zope 2.2.2

zope zope 2.2.1

zope zope 2.1.3

zope zope 2.1.2

zope zope 2.1.1

zope zope 2.0.0

zope zope 1.10.3

Exploits

source: wwwsecurityfocuscom/bid/32267/info Zope is prone to multiple remote denial-of-service vulnerabilities Remote attackers can exploit this issue to cause the Zope server to halt or to consume excessive server resources, resulting in denial-of-service conditions These issues affect Zope 270 through 2112 To halt the applicat ...