CVE-2007-0240

Publication date 22 March 2007

Last updated 17 July 2025


Ubuntu priority

Description

Cross-site scripting (XSS) vulnerability in Zope 2.10.2 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified vectors in a HTTP GET request.

Status

Package Ubuntu Release Status
zope2.9 9.10 karmic Not in release
9.04 jaunty Not in release
8.10 intrepid
Fixed 2.9.6-4etch1
8.04 LTS hardy
Fixed 2.9.6-4etch1
7.10 gutsy
Fixed 2.9.6-4etch1
7.04 feisty
Fixed 2.9.6-4etch1
6.10 edgy Ignored end of life, was needed
6.06 LTS dapper Ignored end of life


Access our resources on patching vulnerabilities