HomeResources > Vulnerabilites > CVE-2000-0725

CVE-2000-0725

Status:

Entry

Description:

Zope before 2.2.1 does not properly restrict access to the getRoles method, which allows users who can edit DTML to add or modify roles by modifying the roles list that is included in a request.

Reference:

CVE IDProtocolSoursePortTargetPort

Other Vulnerabilities:

Year CEV (3053)
Common Vulnerabilities
and Exposures
CAN (20174)
Candidate
1999CVE-1999 (821)CAN-1999 (749 )
2000CVE-2000 (808)CAN-2000 (423 )
2001CVE-2001 (625)CAN-2001 (934 )
2002CVE-2002 (643)CAN-2002 (1566)
2003CVE-2003 (81 )CAN-2003 (1236)
2004CVE-2004 (75 )CAN-2004 (2601)
2005-CAN-2005 (4825)
2006-CAN-2006 (6982)
2007-CAN-2007 (858 )

Free Network Analyzer

Free Network Analyzer
New Capsa v7.7 Released, Try it Free!

We’re here to help…

    If you have any problem, please tell us to help you.
  • Contact Us
  • Call:  800-381-6680
    Fax:  888-813-1029
    email:  

Stay in touch

Colasoft in Facebook   Colasoft in Twitter   Colasoft in Linkedin

Colasoft, Capsa, nChronos and Colasoft logos are registered trademarks of Colasoft. Sniffer is a registered trademark of Network General Corporation. All other names are trademarks or registered trademarks of their respective owners.