Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2010-3198

Опубликовано: 02 сент. 2010
Источник: redhat
CVSS2: 5
EPSS Низкий

Описание

ZServer in Zope 2.10.x before 2.10.12 and 2.11.x before 2.11.7 allows remote attackers to cause a denial of service (crash of worker threads) via vectors that trigger uncaught exceptions.

Отчет

Not vulnerable. This issue did not affect the versions of conga as shipped with Red Hat Cluster Suite for Red Hat Enterprise Linux 4 and as shipped with Red Hat Enterprise Linux 5 as they use own internal mechanism to verify if user requesting particular page is authenticated. Plone private pages permissions configuration mechanism is not used in conga.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 5congaNot affected

Показывать по

Дополнительная информация

Статус:

Low
https://bugzilla.redhat.com/show_bug.cgi?id=631772Zope: Zope child threads termination due unhandled exceptions in PluggableAuthService (PAS)

EPSS

Процентиль: 72%
0.01528
Низкий

5 Medium

CVSS2

Связанные уязвимости

ubuntu
почти 16 лет назад

ZServer in Zope 2.10.x before 2.10.12 and 2.11.x before 2.11.7 allows remote attackers to cause a denial of service (crash of worker threads) via vectors that trigger uncaught exceptions.

nvd
почти 16 лет назад

ZServer in Zope 2.10.x before 2.10.12 and 2.11.x before 2.11.7 allows remote attackers to cause a denial of service (crash of worker threads) via vectors that trigger uncaught exceptions.

debian
почти 16 лет назад

ZServer in Zope 2.10.x before 2.10.12 and 2.11.x before 2.11.7 allows ...

CVSS3: 7.5
github
около 4 лет назад

Zope Denial of Service (DoS) vulnerability in ZServer

EPSS

Процентиль: 72%
0.01528
Низкий

5 Medium

CVSS2