Vulnerability Details CVE-2002-0170
Zope 2.2.0 through 2.5.1 does not properly verify the access for objects with proxy roles, which could allow some users to access documents in violation of the intended configuration.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.007
EPSS Ranking 71.7%
CVSS Severity
CVSS v2 Score 7.5
Products affected by CVE-2002-0170
-
cpe:2.3:a:zope:zope:2.2.0
-
cpe:2.3:a:zope:zope:2.2.1
-
cpe:2.3:a:zope:zope:2.2.2
-
cpe:2.3:a:zope:zope:2.2.3
-
cpe:2.3:a:zope:zope:2.2.4
-
cpe:2.3:a:zope:zope:2.2.5
-
cpe:2.3:a:zope:zope:2.3.0
-
cpe:2.3:a:zope:zope:2.3.1
-
cpe:2.3:a:zope:zope:2.3.2
-
cpe:2.3:a:zope:zope:2.3.3
-
cpe:2.3:a:zope:zope:2.4.0
-
cpe:2.3:a:zope:zope:2.4.1
-
cpe:2.3:a:zope:zope:2.4.2
-
cpe:2.3:a:zope:zope:2.4.3
-
cpe:2.3:a:zope:zope:2.4.4b1
-
cpe:2.3:a:zope:zope:2.5.0
-
cpe:2.3:a:zope:zope:2.5.1b1