First published: Tue Sep 08 2009(Updated: )
Unspecified vulnerability in the Zope Enterprise Objects (ZEO) storage-server functionality in Zope Object Database (ZODB) 3.8 before 3.8.3 and 3.9.x before 3.9.0c2, when certain ZEO database sharing and blob support are enabled, allows remote authenticated users to read or delete arbitrary files via unknown vectors.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Zope Zodb | =3.9.0 | |
Zope Zodb | =3.8.2 | |
Zope Zodb | =3.9.0b5 | |
Zope Zodb | =3.8.0 | |
Zope Zodb | =3.9.0b1 | |
Zope Zodb | =3.9.0b3 | |
Zope Zodb | =3.8 | |
Zope Zodb | =3.9.0c1 | |
Zope Zodb | =3.9.0b4 | |
Zope Zodb | =3.8.1 | |
Zope Zodb | =3.9.0b2 | |
pip/zodb3 | >=3.9a0<3.9.0c2 | 3.9.0c2 |
pip/zodb3 | >=3.8<3.8.3 | 3.8.3 |
=3.8 | ||
=3.8.0 | ||
=3.8.1 | ||
=3.8.2 | ||
=3.9.0 | ||
=3.9.0b1 | ||
=3.9.0b2 | ||
=3.9.0b3 | ||
=3.9.0b4 | ||
=3.9.0b5 | ||
=3.9.0c1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.