Lucene search

K
osvGoogleOSV:DSA-1113
HistoryJul 18, 2006 - 12:00 a.m.

zope2.7 - programming error

2006-07-1800:00:00
Google
osv.dev
9

0.0004 Low

EPSS

Percentile

5.1%

It was discovered that the Zope web application server allows read access
to arbitrary pages on the server, if a user has the privilege to edit
“restructured text” pages.

For the stable distribution (sarge) this problem has been fixed in
version 2.7.5-2sarge2.

The unstable distribution (sid) does no longer contain Zope 2.7 packages.

We recommend that you upgrade your zope2.7 package.

CPENameOperatorVersion
zope2.7eq2.7.5-2
zope2.7eq2.7.5-2sarge1