CVE-2002-0687: Zope Server vulnerable to DoS via header injection
(updated )
The “through the web code” capability for Zope 2.0 through 2.5.1 b1 allows untrusted users to shut down the Zope server via certain headers.
References
- www.redhat.com/support/errata/RHSA-2002-060.html
- www.zope.org/Products/Zope/Hotfix_2002-04-15/security_alert
- github.com/advisories/GHSA-vwrc-g9q6-f675
- marc.info/?l=zope-announce&m=101890177815066&w=2
- marc.info/?l=zope-announce&m=101897461507941&w=2
- marc.info/?l=zope-announce&m=101897462107967&w=2
- nvd.nist.gov/vuln/detail/CVE-2002-0687
- web.archive.org/web/20020822024423/http://www.iss.net/security_center/static/9621.php
- web.archive.org/web/20021018100409/http://online.securityfocus.com/bid/5813
Detect and mitigate CVE-2002-0687 with GitLab Dependency Scanning
Secure your software supply chain by verifying that all open source dependencies used in your projects contain no disclosed vulnerabilities. Learn more about Dependency Scanning →