cvelist/2006/3xxx/CVE-2006-3458.json
2017-10-16 12:31:07 -04:00

94 lines
2.6 KiB
JSON

{
"CVE_data_meta" : {
"ASSIGNER" : "cve@mitre.org",
"ID" : "CVE-2006-3458",
"STATE" : "PUBLIC"
},
"affects" : {
"vendor" : {
"vendor_data" : [
{
"product" : {
"product_data" : [
{
"product_name" : "n/a",
"version" : {
"version_data" : [
{
"version_value" : "n/a"
}
]
}
}
]
},
"vendor_name" : "n/a"
}
]
}
},
"data_format" : "MITRE",
"data_type" : "CVE",
"data_version" : "4.0",
"description" : {
"description_data" : [
{
"lang" : "eng",
"value" : "Zope 2.7.0 to 2.7.8, 2.8.0 to 2.8.7, and 2.9.0 to 2.9.3 (Zope2) does not disable the \"raw\" command when providing untrusted users with restructured text (reStructuredText) functionality from docutils, which allows local users to read arbitrary files."
}
]
},
"problemtype" : {
"problemtype_data" : [
{
"description" : [
{
"lang" : "eng",
"value" : "n/a"
}
]
}
]
},
"references" : {
"reference_data" : [
{
"url" : "http://mail.zope.org/pipermail/zope-announce/2006-July/001984.html"
},
{
"url" : "http://www.zope.org/Products/Zope/Hotfix-2006-07-05/Hotfix-20060705/README.txt"
},
{
"url" : "http://www.debian.org/security/2006/dsa-1113"
},
{
"url" : "http://www.novell.com/linux/security/advisories/2006_19_sr.html"
},
{
"url" : "http://www.ubuntulinux.org/support/documentation/usn/usn-317-1"
},
{
"url" : "http://www.securityfocus.com/bid/18856"
},
{
"url" : "http://www.vupen.com/english/advisories/2006/2681"
},
{
"url" : "http://secunia.com/advisories/20988"
},
{
"url" : "http://secunia.com/advisories/21025"
},
{
"url" : "http://secunia.com/advisories/21130"
},
{
"url" : "http://secunia.com/advisories/21459"
},
{
"url" : "https://exchange.xforce.ibmcloud.com/vulnerabilities/27636"
}
]
}
}