PublicDate: 2007-03-22 18:19:00 UTC Candidate: CVE-2007-0240 References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0240 Description: Cross-site scripting (XSS) vulnerability in Zope 2.10.2 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified vectors in a HTTP GET request. Ubuntu-Description: Notes: Priority: untriaged Discovered-by: Assigned-to: CVSS: Bugs: dapper_zope2.9: ignored (reached end-of-life) edgy_zope2.9: needed (reached end-of-life) feisty_zope2.9: released (2.9.6-4etch1) gutsy_zope2.9: released (2.9.6-4etch1) hardy_zope2.9: released (2.9.6-4etch1) intrepid_zope2.9: released (2.9.6-4etch1) jaunty_zope2.9: DNE karmic_zope2.9: DNE devel_zope2.9: DNE upstream_zope2.9: needs-triage