CVE-2000-1212

EPSS 0.86%

Zope allows attackers to modify raw image and file data

Published: 4/30/2022Modified: 11/8/2023
Also known as:GHSA-7whr-j8vf-r4wj

Description

Zope 2.2.0 through 2.2.4 does not properly protect a data updating method on Image and File objects, which allows attackers with DTML editing privileges to modify the raw data of these objects.

Affected packages (1)

References (6)