CVE-2000-1211

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
16/12/2000
Last modified:
03/04/2025

Description

Zope 2.2.0 through 2.2.4 does not properly perform security registration for legacy names of object constructors such as DTML method objects, which could allow attackers to perform unauthorized activities.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:zope:zope:2.2.0:*:*:*:*:*:*:*
cpe:2.3:a:zope:zope:2.2.0a1:*:*:*:*:*:*:*
cpe:2.3:a:zope:zope:2.2.0b1:*:*:*:*:*:*:*
cpe:2.3:a:zope:zope:2.2.0b2:*:*:*:*:*:*:*
cpe:2.3:a:zope:zope:2.2.0b3:*:*:*:*:*:*:*
cpe:2.3:a:zope:zope:2.2.0b4:*:*:*:*:*:*:*
cpe:2.3:a:zope:zope:2.2.1:*:*:*:*:*:*:*
cpe:2.3:a:zope:zope:2.2.1b1:*:*:*:*:*:*:*
cpe:2.3:a:zope:zope:2.2.2:*:*:*:*:*:*:*
cpe:2.3:a:zope:zope:2.2.3:*:*:*:*:*:*:*
cpe:2.3:a:zope:zope:2.2.4:*:*:*:*:*:*:*