CVE-2001-0567: Medium severity Zope Zope vulnerability
Published Aug 14, 2001
·Updated
Digital Creations Zope 2.3.2 and earlier allows a local attacker to gain additional privileges via the changing of ZClass permission mappings for objects and methods in the ZClass.
Affected Software
2 affected components
Zope Zope=7.1
Zope Zope=7.2
Remediation
Patch Available
Event History
Aug 14, 2001
CVE Published
04:00 AM
Mar 9, 2002
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2001-0567?
CVE-2001-0567 is classified as a local privilege escalation vulnerability.
2
How do I fix CVE-2001-0567?
To fix CVE-2001-0567, upgrade to a patched version of Zope that addresses this vulnerability.
3
Who is affected by CVE-2001-0567?
CVE-2001-0567 affects users of Digital Creations Zope versions 2.3.2 and earlier.
4
What can an attacker do with CVE-2001-0567?
An attacker exploiting CVE-2001-0567 can manipulate ZClass permission mappings to gain additional privileges.
5
Is there a workaround for CVE-2001-0567?
The best resolution for CVE-2001-0567 is to upgrade to a non-vulnerable version, as there are no effective workarounds.