ZCatalog plug-in index support capability for Zope 2.4.0 through 2.5.1 allows anonymous users and untrusted code to bypass access restrictions and call arbitrary methods of catalog indexes.
References
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2003-04-02T05:00:00
Updated: 2003-03-24T00:00:00
Reserved: 2002-07-12T00:00:00
Link: CVE-2002-0688
JSON object: View
NVD Information
Status : Analyzed
Published: 2002-07-23T04:00:00.000
Modified: 2008-09-05T20:28:41.333
Link: CVE-2002-0688
JSON object: View
Redhat Information
No data.
CWE