Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-7944-h5rw-qmjx

Опубликовано: 30 апр. 2022
Источник: github
Github: Прошло ревью

Описание

ZCatalog plug-in for Zope allows anonymous users to bypass access restrictions

ZCatalog plug-in index support capability for Zope 2.4.0 through 2.5.1 allows anonymous users and untrusted code to bypass access restrictions and call arbitrary methods of catalog indexes.

Пакеты

Наименование

zope

pip
Затронутые версииВерсия исправления

>= 2.4.0, <= 2.5.1

2.6.0

EPSS

Процентиль: 69%
0.00602
Низкий

Связанные уязвимости

redhat
около 23 лет назад

ZCatalog plug-in index support capability for Zope 2.4.0 through 2.5.1 allows anonymous users and untrusted code to bypass access restrictions and call arbitrary methods of catalog indexes.

nvd
почти 23 года назад

ZCatalog plug-in index support capability for Zope 2.4.0 through 2.5.1 allows anonymous users and untrusted code to bypass access restrictions and call arbitrary methods of catalog indexes.

debian
почти 23 года назад

ZCatalog plug-in index support capability for Zope 2.4.0 through 2.5.1 ...

EPSS

Процентиль: 69%
0.00602
Низкий