CVE-2006-4684

CVSS 5.0 - MEDIUM
Description

The docutils module in Zope (Zope2) 2.7.0 through 2.7.9 and 2.8.0 through 2.8.8 does not properly handle web pages with reStructuredText (reST) markup, which allows remote attackers to read arbitrary files via a csv_table directive, a different vulnerability than CVE-2006-3458.

Affected Products
19
Vendor Product Version
zope zope 2.7.0
zope zope 2.7.1
zope zope 2.7.2
zope zope 2.7.3
zope zope 2.7.4
zope zope 2.7.5
zope zope 2.7.6
zope zope 2.7.7
zope zope 2.7.8
zope zope 2.7.9
zope zope 2.8.0
zope zope 2.8.1
zope zope 2.8.2
zope zope 2.8.3
zope zope 2.8.4
zope zope 2.8.5
zope zope 2.8.6
zope zope 2.8.7
zope zope 2.8.8
Weakness Types
NVD-CWE-Other
CVE Information
CVE ID:
CVE-2006-4684
Published:
2006-09-19
Modified:
2026-04-16
CVSS Score:
5.0
Severity:
MEDIUM
Vector:
AV:N/AC:L/Au:N/C:P/I:N/A:N
Affected Vendors
zope
Quick Actions
CVSS Severity Scale
0.0 - 3.9 LOW
4.0 - 6.9 MEDIUM
7.0 - 8.9 HIGH
9.0 - 10.0 CRITICAL