7.2

CVE-2001-0128

Zope before 2.2.4 does not properly compute local roles, which could allow users to bypass specified access restrictions and gain privileges.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Redhat ≫ Linux Powertools Version 6.1
Redhat ≫ Linux Powertools Version 6.2
Redhat ≫ Linux Powertools Version 7.0
Zope ≫ Zope Version <= 2.2.4
Conectiva ≫ Linux Version 4.2
Conectiva ≫ Linux Version 5.0
Conectiva ≫ Linux Version 5.1
Conectiva ≫ Linux Version 6.0
Debian ≫ Debian Linux Version 2.2
Freebsd ≫ Freebsd Version 6.2 Update stable
Mandrakesoft ≫ Mandrake Linux Version 7.1
Mandrakesoft ≫ Mandrake Linux Version 7.2
Redhat ≫ Linux Version 6.1
Redhat ≫ Linux Version 6.2
Redhat ≫ Linux Version 7.0
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.42% 0.335
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 7.2 3.9 10
AV:L/AC:L/Au:N/C:C/I:C/A:C
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000365
ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-01:06.zope.asc
Patch
Vendor Advisory
http://www.debian.org/security/2000/20001219
Patch
Vendor Advisory
http://www.linux-mandrake.com/en/updates/2000/MDKSA-2000-083.php3
Patch
http://www.osvdb.org/6284
http://www.redhat.com/support/errata/RHSA-2000-127.html
https://exchange.xforce.ibmcloud.com/vulnerabilities/5777