Lucene search

K
cveMitreCVE-2000-0483
HistoryOct 13, 2000 - 4:00 a.m.

CVE-2000-0483

2000-10-1304:00:00
mitre
web.nvd.nist.gov
20
zope 2.2
documenttemplate
vulnerability
remote attack
dtmldocuments
unauthorized modification

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

AI Score

6.5

Confidence

High

EPSS

0.016

Percentile

87.4%

The DocumentTemplate package in Zope 2.2 and earlier allows a remote attacker to modify DTMLDocuments or DTMLMethods without authorization.

Affected configurations

Nvd
Node
redhatlinux_powertoolsMatch6.1
OR
redhatlinux_powertoolsMatch6.2
OR
zopezopeMatch1.10.3
OR
zopezopeMatch2.1.1
OR
zopezopeMatch2.1.7
VendorProductVersionCPE
redhatlinux_powertools6.1cpe:2.3:a:redhat:linux_powertools:6.1:*:*:*:*:*:*:*
redhatlinux_powertools6.2cpe:2.3:a:redhat:linux_powertools:6.2:*:*:*:*:*:*:*
zopezope1.10.3cpe:2.3:a:zope:zope:1.10.3:*:*:*:*:*:*:*
zopezope2.1.1cpe:2.3:a:zope:zope:2.1.1:*:*:*:*:*:*:*
zopezope2.1.7cpe:2.3:a:zope:zope:2.1.7:*:*:*:*:*:*:*

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

AI Score

6.5

Confidence

High

EPSS

0.016

Percentile

87.4%

Related for CVE-2000-0483