4.3

CVE-2010-3198

Exploit
ZServer in Zope 2.10.x before 2.10.12 and 2.11.x before 2.11.7 allows remote attackers to cause a denial of service (crash of worker threads) via vectors that trigger uncaught exceptions.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Zope ≫ Zope Version 2.10.0-b1
Zope ≫ Zope Version 2.10.0-b2
Zope ≫ Zope Version 2.10.0-c1
Zope ≫ Zope Version 2.10.0-final
Zope ≫ Zope Version 2.10.2
Zope ≫ Zope Version 2.10.2-b1
Zope ≫ Zope Version 2.10.2-final
Zope ≫ Zope Version 2.10.3
Zope ≫ Zope Version 2.10.3-final
Zope ≫ Zope Version 2.10.4-final
Zope ≫ Zope Version 2.10.5
Zope ≫ Zope Version 2.10.6
Zope ≫ Zope Version 2.10.7
Zope ≫ Zope Version 2.10.8
Zope ≫ Zope Version 2.10.9
Zope ≫ Zope Version 2.10.10
Zope ≫ Zope Version 2.10.11
Zope ≫ Zope Version 2.11.0
Zope ≫ Zope Version 2.11.0a1
Zope ≫ Zope Version 2.11.0b1
Zope ≫ Zope Version 2.11.0c1
Zope ≫ Zope Version 2.11.1
Zope ≫ Zope Version 2.11.2
Zope ≫ Zope Version 2.11.3
Zope ≫ Zope Version 2.11.4
Zope ≫ Zope Version 2.11.5
Zope ≫ Zope Version 2.11.6
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 1.53% 0.714
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 4.3 8.6 2.9
AV:N/AC:M/Au:N/C:N/I:N/A:P
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://www.securityfocus.com/bid/42939
http://www.vupen.com/english/advisories/2010/2275
Vendor Advisory
http://www.zope.org/Products/Zope/2.10.12/CHANGES.txt
http://www.zope.org/Products/Zope/2.11.7/CHANGES.txt
https://bugs.launchpad.net/zope2/+bug/627988
Patch
Vendor Advisory
Exploit
https://mail.zope.org/pipermail/zope-announce/2010-September/002247.html
Patch
Vendor Advisory