Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2006-3458

Опубликовано: 07 июл. 2006
Источник: debian

Описание

Zope 2.7.0 to 2.7.8, 2.8.0 to 2.8.7, and 2.9.0 to 2.9.3 (Zope2) does not disable the "raw" command when providing untrusted users with restructured text (reStructuredText) functionality from docutils, which allows local users to read arbitrary files.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
zope2.7removedpackage
zope2.8fixed2.8.7-2package
zope2.9fixed2.9.3-3package

Связанные уязвимости

ubuntu
больше 19 лет назад

Zope 2.7.0 to 2.7.8, 2.8.0 to 2.8.7, and 2.9.0 to 2.9.3 (Zope2) does not disable the "raw" command when providing untrusted users with restructured text (reStructuredText) functionality from docutils, which allows local users to read arbitrary files.

nvd
больше 19 лет назад

Zope 2.7.0 to 2.7.8, 2.8.0 to 2.8.7, and 2.9.0 to 2.9.3 (Zope2) does not disable the "raw" command when providing untrusted users with restructured text (reStructuredText) functionality from docutils, which allows local users to read arbitrary files.

github
больше 3 лет назад

Zope allows local users to read arbitrary files