CVE-2002-0688

EPSS 0.60%

zope - arbitrary code execution

Published: 4/30/2022Modified: 3/9/2026

Description

ZCatalog plug-in index support capability for Zope 2.4.0 through 2.5.1 allows anonymous users and untrusted code to bypass access restrictions and call arbitrary methods of catalog indexes.

Affected packages (2)

References (6)