CVE List

Id CVE No. Status Description Phase Votes Comments Actions
4031  CVE-2001-1227  Entry  Zope before 2.2.4 allows partially trusted users to bypass security controls for certain methods by accessing the methods through the fmt attribute of dtml-var tags.        View
4082  CVE-2001-1278  Candidate  Zope before 2.2.4 allows partially trusted users to bypass security controls for certain methods by accessing the methods through the fmt attribute of dtml-var tags.  Proposed (20020502)  ACCEPT(3) Cole, Green, Wall | NOOP(1) Foat | REJECT(3) Christey, Cox, Frech  Christey> Agreed; dupe of CVE-2001-1227  View
2949  CVE-2001-0128  Entry  Zope before 2.2.4 does not properly compute local roles, which could allow users to bypass specified access restrictions and gain privileges.        View
38104  CVE-2009-0669  Candidate  Zope Object Database (ZODB) before 3.8.2, when certain Zope Enterprise Objects (ZEO) database sharing is enabled, allows remote attackers to bypass authentication via vectors involving the ZEO network protocol.  Assigned (20090222)  None (candidate not yet proposed)    View
40711  CVE-2009-3276  Candidate  Zoran/WinFormsAdvansed/RegeularDataToXML/Form1.cs in WinFormsAdvansed in NASD CORE.NET Terelik (aka corenet1) allows context-dependent attackers to cause a denial of service (CPU consumption) via an input string composed of many alphabetic characters followed by a ! (exclamation point), related to a certain regular expression, aka a "ReDoS" vulnerability.  Assigned (20090921)  None (candidate not yet proposed)    View

Page 20933 of 20943, showing 5 records out of 104715 total, starting on record 104661, ending on 104665

Actions