Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2008-5102


PythonScripts in Zope 2 2.11.2 and earlier, as used in Conga and other products, allows remote authenticated users to cause a denial of service (resource consumption or application halt) via certain (1) raise or (2) import statements.


Published

2008-11-17T18:18:47.983

Last Modified

2025-04-09T00:30:58.490

Status

Deferred

Source

[email protected]

Severity

CVSSv2: 4.0 (MEDIUM)

CVSSv2 Vector

AV:N/AC:L/Au:S/C:N/I:N/A:P

  • Access Vector: NETWORK
  • Access Complexity: LOW
  • Authentication: SINGLE
  • Confidentiality Impact: NONE
  • Integrity Impact: NONE
  • Availability Impact: PARTIAL
Exploitability Score

8.0

Impact Score

2.9

Weaknesses
  • Type: Primary
    CWE-399

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application zope zope ≤ 2.11.2 Yes
Application zope zope 1.10.3 Yes
Application zope zope 1.10.4 Yes
Application zope zope 2.0.0 Yes
Application zope zope 2.0.0a4 Yes
Application zope zope 2.0.0b4 Yes
Application zope zope 2.0.0b5 Yes
Application zope zope 2.0.0b6 Yes
Application zope zope 2.0.1 Yes
Application zope zope 2.1.0 Yes
Application zope zope 2.1.0b1 Yes
Application zope zope 2.1.0b2 Yes
Application zope zope 2.1.1 Yes
Application zope zope 2.1.2 Yes
Application zope zope 2.1.3 Yes
Application zope zope 2.1.4 Yes
Application zope zope 2.1.5 Yes
Application zope zope 2.1.6 Yes
Application zope zope 2.2.0 Yes
Application zope zope 2.2.0a1 Yes
Application zope zope 2.2.0b1 Yes
Application zope zope 2.2.0b2 Yes
Application zope zope 2.2.0b3 Yes
Application zope zope 2.2.0b4 Yes
Application zope zope 2.2.1 Yes
Application zope zope 2.2.1b1 Yes
Application zope zope 2.2.2 Yes
Application zope zope 2.2.3 Yes
Application zope zope 2.2.4 Yes
Application zope zope 2.2.4b1 Yes
Application zope zope 2.2.5 Yes
Application zope zope 2.2.5b1 Yes
Application zope zope 2.3.0 Yes
Application zope zope 2.3.0a1 Yes
Application zope zope 2.3.0a2 Yes
Application zope zope 2.3.0b1 Yes
Application zope zope 2.3.0b2 Yes
Application zope zope 2.3.0b3 Yes
Application zope zope 2.3.1 Yes
Application zope zope 2.3.1b1 Yes
Application zope zope 2.3.1b2 Yes
Application zope zope 2.3.1b3 Yes
Application zope zope 2.3.2 Yes
Application zope zope 2.3.2b1 Yes
Application zope zope 2.3.2b2 Yes
Application zope zope 2.3.3 Yes
Application zope zope 2.3.3b1 Yes
Application zope zope 2.4.0 Yes
Application zope zope 2.4.0a1 Yes
Application zope zope 2.4.0b1 Yes
Application zope zope 2.4.0b2 Yes
Application zope zope 2.4.0b3 Yes
Application zope zope 2.4.1 Yes
Application zope zope 2.4.1b1 Yes
Application zope zope 2.4.2 Yes
Application zope zope 2.4.2b1 Yes
Application zope zope 2.4.3 Yes
Application zope zope 2.4.3 Yes
Application zope zope 2.4.3b1 Yes
Application zope zope 2.4.4 Yes
Application zope zope 2.4.4 Yes
Application zope zope 2.4.4b1 Yes
Application zope zope 2.5.0 Yes
Application zope zope 2.5.0a1 Yes
Application zope zope 2.5.0a2 Yes
Application zope zope 2.5.0b1 Yes
Application zope zope 2.5.1 Yes
Application zope zope 2.5.1 Yes
Application zope zope 2.5.1b1 Yes
Application zope zope 2.5.1b2 Yes
Application zope zope 2.6.0 Yes
Application zope zope 2.6.0a1 Yes
Application zope zope 2.6.0b1 Yes
Application zope zope 2.6.0b2 Yes
Application zope zope 2.6.1 Yes
Application zope zope 2.6.1 Yes
Application zope zope 2.6.1.b1 Yes
Application zope zope 2.6.2 Yes
Application zope zope 2.6.2.b1 Yes
Application zope zope 2.6.2.b2 Yes
Application zope zope 2.6.2.b3 Yes
Application zope zope 2.6.2.b4 Yes
Application zope zope 2.6.2.b5 Yes
Application zope zope 2.6.2.b6 Yes
Application zope zope 2.6.3 Yes
Application zope zope 2.6.4 Yes
Application zope zope 2.6.4 Yes
Application zope zope 2.6.4 Yes
Application zope zope 2.7.0-a1 Yes
Application zope zope 2.7.0-b1 Yes
Application zope zope 2.7.0-b2 Yes
Application zope zope 2.7.0-b3 Yes
Application zope zope 2.7.0-b4 Yes
Application zope zope 2.7.0-c1 Yes
Application zope zope 2.7.0-c2 Yes
Application zope zope 2.7.0-final Yes
Application zope zope 2.7.1-b1 Yes
Application zope zope 2.7.1-b2 Yes
Application zope zope 2.7.1-final Yes
Application zope zope 2.7.2-c1 Yes
Application zope zope 2.7.2-final Yes
Application zope zope 2.7.3-b1 Yes
Application zope zope 2.7.3-b2 Yes
Application zope zope 2.7.3-final Yes
Application zope zope 2.7.4-b1 Yes
Application zope zope 2.7.4-b2 Yes
Application zope zope 2.7.4-c1 Yes
Application zope zope 2.7.4-c2 Yes
Application zope zope 2.7.4-final Yes
Application zope zope 2.7.5-b1 Yes
Application zope zope 2.7.5-c1 Yes
Application zope zope 2.7.5-final Yes
Application zope zope 2.7.6-b1 Yes
Application zope zope 2.7.6-b2 Yes
Application zope zope 2.7.6-final Yes
Application zope zope 2.7.7-b1 Yes
Application zope zope 2.7.7-final Yes
Application zope zope 2.7.8 Yes
Application zope zope 2.7.9 Yes
Application zope zope 2.8.0-a1 Yes
Application zope zope 2.8.0-a2 Yes
Application zope zope 2.8.0-b1 Yes
Application zope zope 2.8.0-b2 Yes
Application zope zope 2.8.0-final Yes
Application zope zope 2.8.1-b1 Yes
Application zope zope 2.8.1-final Yes
Application zope zope 2.8.2 Yes
Application zope zope 2.8.3 Yes
Application zope zope 2.8.4 Yes
Application zope zope 2.8.5 Yes
Application zope zope 2.8.6 Yes
Application zope zope 2.8.7 Yes
Application zope zope 2.8.8 Yes
Application zope zope 2.8.9 Yes
Application zope zope 2.8.9.1 Yes
Application zope zope 2.8.10 Yes
Application zope zope 2.9.0-b1 Yes
Application zope zope 2.9.0-b2 Yes
Application zope zope 2.9.0-final Yes
Application zope zope 2.9.1 Yes
Application zope zope 2.9.2 Yes
Application zope zope 2.9.3 Yes
Application zope zope 2.9.4 Yes
Application zope zope 2.9.5 Yes
Application zope zope 2.9.6 Yes
Application zope zope 2.9.7 Yes
Application zope zope 2.9.8 Yes
Application zope zope 2.9.9 Yes
Application zope zope 2.9.10 Yes
Application zope zope 2.10.0-b1 Yes
Application zope zope 2.10.0-b2 Yes
Application zope zope 2.10.0-c1 Yes
Application zope zope 2.10.0-final Yes
Application zope zope 2.10.2-b1 Yes
Application zope zope 2.10.2-final Yes
Application zope zope 2.10.3-final Yes
Application zope zope 2.10.4-final Yes
Application zope zope 2.10.5 Yes
Application zope zope 2.10.6 Yes
Application zope zope 2.10.7 Yes
Application zope zope 2.11.0 Yes
Application zope zope 2.11.1 Yes

References