December 18, 2000

Mandrake Zope package update

Author: JT Smith

"There is an issue involving security registration of "legacy" names for certain object constructors such as the constructors for DTML Method Objects.... This vulnerability could allow anonymous users with enough knowledge of Zope to instantiate new DTML Method instances through the web."
Complete advistory courtesy


  • Linux
Click Here!