Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2006-3458

Опубликовано: 07 июл. 2006
Источник: debian
EPSS Низкий

Описание

Zope 2.7.0 to 2.7.8, 2.8.0 to 2.8.7, and 2.9.0 to 2.9.3 (Zope2) does not disable the "raw" command when providing untrusted users with restructured text (reStructuredText) functionality from docutils, which allows local users to read arbitrary files.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
zope2.7removedpackage
zope2.8fixed2.8.7-2package
zope2.9fixed2.9.3-3package

EPSS

Процентиль: 29%
0.00103
Низкий

Связанные уязвимости

ubuntu
около 19 лет назад

Zope 2.7.0 to 2.7.8, 2.8.0 to 2.8.7, and 2.9.0 to 2.9.3 (Zope2) does not disable the "raw" command when providing untrusted users with restructured text (reStructuredText) functionality from docutils, which allows local users to read arbitrary files.

nvd
около 19 лет назад

Zope 2.7.0 to 2.7.8, 2.8.0 to 2.8.7, and 2.9.0 to 2.9.3 (Zope2) does not disable the "raw" command when providing untrusted users with restructured text (reStructuredText) functionality from docutils, which allows local users to read arbitrary files.

github
больше 3 лет назад

Zope allows local users to read arbitrary files

EPSS

Процентиль: 29%
0.00103
Низкий