Zope ZClass Modification DOS Vulnerability

Zope is a dynamic HTML management package, maintained by the Zope Project. A security vulnerability exists in the affected versions of Zope that may allow remote users to read from and write to internal Zope data structures

A remote attacker may delete add or delete attributes or methods of existing ZClasses, potentially interfering with normal site functionality and allowing a denial of service attack on the vulnerable host.


 

Privacy Statement
Copyright 2010, SecurityFocus