Zope ZClass Modification Local DoS
Medium Nessus Plugin ID 10702
SynopsisThe remote web server contains an application server that is prone to a denial of service issue.
DescriptionThe remote web server is Zope < 2.2.5. Such versions allow any Zope user to create a denial of service by modifying Zope data structures, thus rendering the site unusable.
*** Since Nessus solely relied on the version number of the server,
*** consider this a false positive if the hotfix has already been applied.
SolutionUpgrade to Zope 2.2.5 or later.