6
CVSSv2

CVE-2009-2701

Published: 08/09/2009 Updated: 09/09/2009
CVSS v2 Base Score: 6 | Impact Score: 6.4 | Exploitability Score: 6.8
VMScore: 534
Vector: AV:N/AC:M/Au:S/C:P/I:P/A:P

Vulnerability Summary

Unspecified vulnerability in the Zope Enterprise Objects (ZEO) storage-server functionality in Zope Object Database (ZODB) 3.8 prior to 3.8.3 and 3.9.x prior to 3.9.0c2, when certain ZEO database sharing and blob support are enabled, allows remote authenticated users to read or delete arbitrary files via unknown vectors.

Vulnerable Product Search on Vulmon Subscribe to Product

zope zodb 3.9.0

zope zodb 3.8.1

zope zodb 3.8.0

zope zodb 3.9.0b5

zope zodb 3.9.0b4

zope zodb 3.9.0b3

zope zodb 3.9.0b2

zope zodb 3.8

zope zodb 3.9.0c1

zope zodb 3.9.0b1

zope zodb 3.8.2