Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-m52m-2qpx-9j4j

Опубликовано: 02 мая 2022
Источник: github
Github: Прошло ревью
CVSS4: 9.3
CVSS3: 9.8

Описание

Zope Object Database (ZODB) Arbitrary files reading and deletion

Unspecified vulnerability in the Zope Enterprise Objects (ZEO) storage-server functionality in Zope Object Database (ZODB) 3.8 before 3.8.3 and 3.9.x before 3.9.0c2, when certain ZEO database sharing and blob support are enabled, allows remote authenticated users to read or delete arbitrary files via unknown vectors.

Пакеты

Наименование

ZODB3

pip
Затронутые версииВерсия исправления

>= 3.8, < 3.8.3

3.8.3

Наименование

ZODB3

pip
Затронутые версииВерсия исправления

>= 3.9a0, < 3.9.0c2

3.9.0c2

EPSS

Процентиль: 61%
0.00419
Низкий

9.3 Critical

CVSS4

9.8 Critical

CVSS3

Связанные уязвимости

ubuntu
больше 16 лет назад

Unspecified vulnerability in the Zope Enterprise Objects (ZEO) storage-server functionality in Zope Object Database (ZODB) 3.8 before 3.8.3 and 3.9.x before 3.9.0c2, when certain ZEO database sharing and blob support are enabled, allows remote authenticated users to read or delete arbitrary files via unknown vectors.

redhat
больше 16 лет назад

Unspecified vulnerability in the Zope Enterprise Objects (ZEO) storage-server functionality in Zope Object Database (ZODB) 3.8 before 3.8.3 and 3.9.x before 3.9.0c2, when certain ZEO database sharing and blob support are enabled, allows remote authenticated users to read or delete arbitrary files via unknown vectors.

nvd
больше 16 лет назад

Unspecified vulnerability in the Zope Enterprise Objects (ZEO) storage-server functionality in Zope Object Database (ZODB) 3.8 before 3.8.3 and 3.9.x before 3.9.0c2, when certain ZEO database sharing and blob support are enabled, allows remote authenticated users to read or delete arbitrary files via unknown vectors.

debian
больше 16 лет назад

Unspecified vulnerability in the Zope Enterprise Objects (ZEO) storage ...

EPSS

Процентиль: 61%
0.00419
Низкий

9.3 Critical

CVSS4

9.8 Critical

CVSS3