← Back

CVE-2001-0128

nvd nist
Published: Mar 12, 2001Modified: Apr 16, 2026

JSON object

Loading...
7.2
Vector
AV:L/AC:L/Au:N/C:C/I:C/A:C
Exploitability: 3.9 / Impact: 10.0
Source: NVD

Description

Zope before 2.2.4 does not properly compute local roles, which could allow users to bypass specified access restrictions and gain privileges.

Affected (15)

Products: Conectiva: Linux · Redhat: Linux Powertools, Linux · Zope: Zope · +3 more
Show all products
1 product
Linux
2 products
Linux Powertools
Linux
1 product
Zope
1 product
Debian Linux
1 product
Freebsd
1 product
Mandrake Linux
Configuration A
8 vulnerable
Vulnerable SoftwareAffected Versions
Conectiva
Version 4.2
Version 5.0
Version 5.1
Version 6.0
Redhat
Version 6.1
Version 6.2
Version 7.0
Up to 2.2.4
Configuration B
7 vulnerable
Vulnerable SoftwareAffected Versions
Version 2.2
Version 6.2 stable
Mandrakesoft
Version 7.1
Version 7.2
Redhat
Version 6.1
Version 6.2
Version 7.0

References (14)

ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-01:06.zope.asc (unsafe URL)
Source: cve@mitre.org
PatchVendor Advisory
Source: cve@mitre.org
PatchVendor Advisory
Source: cve@mitre.org
ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-01:06.zope.asc (unsafe URL)
Source: af854a3a-2127-422b-91ae-364da2661108
PatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
PatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Patch
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.