Mandrake Linux Security Advisory : Zope (MDKSA-2000:026)

High Nessus Plugin ID 61823


The remote Mandrake Linux host is missing one or more security updates.


Previous versions of Zope have a serious security flaw in one of the base classes in the DocumentTemplate package that is inadequately protected. This flaw allows the contents of DHTML Documents or DHTML Methods to be changed remotely or through DHTML code without forcing proper user authorization.


Update the affected packages.

Plugin Details

Severity: High

ID: 61823

File Name: mandrake_MDKSA-2000-026.nasl

Version: $Revision: 1.3 $

Type: local

Published: 2012/09/06

Modified: 2013/05/31

Dependencies: 12634

Risk Information

Risk Factor: High

Vulnerability Information

CPE: p-cpe:/a:mandriva:linux:Zope, p-cpe:/a:mandriva:linux:Zope-components, p-cpe:/a:mandriva:linux:Zope-core, p-cpe:/a:mandriva:linux:Zope-pcgi, p-cpe:/a:mandriva:linux:Zope-services, p-cpe:/a:mandriva:linux:Zope-zpublisher, p-cpe:/a:mandriva:linux:Zope-zserver, p-cpe:/a:mandriva:linux:Zope-ztemplates, cpe:/o:mandrakesoft:mandrake_linux:7.1

Required KB Items: Host/local_checks_enabled, Host/cpu, Host/Mandrake/release, Host/Mandrake/rpm-list

Patch Publication Date: 2000/07/28

Reference Information

MDKSA: 2000:026