Bug#373667: zope-zms: CVE-2006-2997: cross-site scripting

Dr. Frank Hoffmann fh at hoffmann-liebenberg.de
Sat Apr 12 09:40:02 UTC 2008

Hello List,
after asking the primary author of the security issue he did not give us any
hints about test details nor the relevance of his 'results'. Moreover
ZMS/Zope is a Python based framework - not PHP based.
Until now the ZMS development team does not see any implications of this. 

Best Regards
Frank Hoffmann

More information about the pkg-zope-developers mailing list