CVE-2007-0240

Publication date 22 March 2007

Last updated 17 July 2025


Ubuntu priority

Cross-site scripting (XSS) vulnerability in Zope 2.10.2 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified vectors in a HTTP GET request.

Status

No maintained releases are affected by this CVE.

Package Ubuntu Release Status
zope2.9 9.10 karmic Not in release
9.04 jaunty Not in release
8.10 intrepid
Fixed 2.9.6-4etch1
8.04 LTS hardy
Fixed 2.9.6-4etch1
7.10 gutsy
Fixed 2.9.6-4etch1
7.04 feisty
Fixed 2.9.6-4etch1
6.10 edgy Ignored end of life, was needed
6.06 LTS dapper Ignored end of life