Vulnerabilities > CVE-2008-5102 - Resource Management Errors vulnerability in Zope
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN Summary
PythonScripts in Zope 2 2.11.2 and earlier, as used in Conga and other products, allows remote authenticated users to cause a denial of service (resource consumption or application halt) via certain (1) raise or (2) import statements.
Vulnerable Configurations
Common Weakness Enumeration (CWE)
Exploit-Db
description | Zope 2.11.2 PythonScript Multiple Remote Denial Of Service Vulnerabilities. CVE-2008-5102. Dos exploits for multiple platform |
id | EDB-ID:32581 |
last seen | 2016-02-03 |
modified | 2008-11-12 |
published | 2008-11-12 |
reporter | Marc-Andre Lemburg |
source | https://www.exploit-db.com/download/32581/ |
title | Zope <= 2.11.2 PythonScript Multiple Remote Denial Of Service Vulnerabilities |
References
- http://www.zope.org/Products/Zope/Hotfix-2008-08-12/README.txt
- http://openwall.com/lists/oss-security/2008/11/12/2
- http://bugs.gentoo.org/show_bug.cgi?id=246411
- http://www.zope.org/Products/Zope/Hotfix-2008-08-12/Hotfix_20080812-1.1.0.tar.gz
- https://bugs.launchpad.net/zope2/+bug/257269
- http://www.vupen.com/english/advisories/2008/2418
- http://mail.zope.org/pipermail/zope/2008-August/174025.html
- https://bugs.launchpad.net/zope2/+bug/257276