CVE-2002-0688
zope - arbitrary code execution
EPSS 1.4%
描述
ZCatalog plug-in index support capability for Zope 2.4.0 through 2.5.1 allows anonymous users and untrusted code to bypass access restrictions and call arbitrary methods of catalog indexes.
如何修補 CVE-2002-0688
要修補 CVE-2002-0688,請將受影響套件升級到下列已修補版本。
CVE-2002-0688 正在被利用嗎?
低 — EPSS 為 1.4%,目前沒有觀察到大規模利用活動。
受影響套件(2)
- >= 2.4.0, < 2.6.0
- >= 2.4.0, < 2.6.0