Zope 2.2.0 through 2.2.4 does not properly protect a data updating method on Image and File objects, which allows attackers with DTML editing privileges to modify the raw data of these objects.
AV:N/AC:L/Au:N/C:N/I:P/A:N
This vulnerability has a 1.54% probability of being exploited in the next 30 days, ranking higher than 74% of all scored CVEs.