Back to search
CVE-2008-5102
Published: Nov 17, 2008
Modified: Aug 7, 2024
PUBLISHED
Description
PythonScripts in Zope 2 2.11.2 and earlier, as used in Conga and other products, allows remote authenticated users to cause a denial of service (resource consumption or application halt) via certain (1) raise or (2) import statements.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
[Zope] 20080812 Script (Python) insecure ?
mailing-list
x_refsource_MLIST
http://bugs.gentoo.org/show_bug.cgi?id=246411
x_refsource_CONFIRM
https://bugs.launchpad.net/zope2/+bug/257269
x_refsource_CONFIRM
http://www.zope.org/Products/Zope/Hotfix-2008-08-12/README.txt
x_refsource_CONFIRM
https://bugs.launchpad.net/zope2/+bug/257276
x_refsource_CONFIRM
ADV-2008-2418
vdb-entry
x_refsource_VUPEN
[oss-security] 20081112 CVE Request - Zope 2 - PythonScripts local DoS
mailing-list
x_refsource_MLIST
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now