← Back

CVE-2000-1211

nvd nist
Published: Dec 16, 2000Modified: Apr 16, 2026

JSON object

Loading...
7.5
Vector
AV:N/AC:L/Au:N/C:P/I:P/A:P
Exploitability: 10.0 / Impact: 6.4
Source: NVD

Description

Zope 2.2.0 through 2.2.4 does not properly perform security registration for legacy names of object constructors such as DTML method objects, which could allow attackers to perform unauthorized activities.

Affected (11)

Products: Zope: Zope
1 product
Zope
Configuration A
11 vulnerable
Vulnerable SoftwareAffected Versions
Zope
Version 2.2.0
Version 2.2.0a1
Version 2.2.0b1
Version 2.2.0b2
Version 2.2.0b3
Version 2.2.0b4
Version 2.2.1
Version 2.2.1b1
Version 2.2.2
Version 2.2.3
Version 2.2.4

References (10)

Source: cve@mitre.org
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
PatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
PatchVendor Advisory

Timeline

No history available yet.