{"id":"CVE-2000-1212","aliases":["PYSEC-2026-756"],"url":"https://o3.security/vulnerability/CVE-2000-1212","summary":"Zope allows attackers to modify raw image and file data","details":"Zope 2.2.0 through 2.2.4 does not properly protect a data updating method on Image and File objects, which allows attackers with DTML editing privileges to modify the raw data of these objects.","published":"2022-04-30T18:15:07Z","modified":"2026-07-06T08:11:35.212260792Z","cvss":null,"epss":null,"cisaKev":null,"exploitsKnown":0,"affectedPackages":[{"ecosystem":"PyPI","name":"zope","fixedVersion":null}],"fix":null,"references":[{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2000-1212"},{"type":"WEB","url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5778"},{"type":"WEB","url":"https://web.archive.org/web/20020117134418/http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000365"},{"type":"WEB","url":"http://www.debian.org/security/2001/dsa-007"},{"type":"WEB","url":"http://www.redhat.com/support/errata/RHSA-2000-135.html"},{"type":"WEB","url":"http://www.zope.org/Products/Zope/Hotfix_2000-12-18/security_alert"}],"provenance":{"sources":["OSV.dev","FIRST.org (EPSS)"],"lastVerified":"2026-07-06T08:11:35.212260792Z"}}