CVE Vulnerabilities

CVE-2003-0977

Published: Jan 05, 2004 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

CVS server before 1.11.10 may allow attackers to cause the CVS server to create directories and files in the file system root directory via malformed module requests.

Affected Software

NameVendorStart VersionEnd Version
CvsCvs1.10.7 (including)1.10.7 (including)
CvsCvs1.10.8 (including)1.10.8 (including)
CvsCvs1.11 (including)1.11 (including)
CvsCvs1.11.1 (including)1.11.1 (including)
CvsCvs1.11.1_p1 (including)1.11.1_p1 (including)
CvsCvs1.11.2 (including)1.11.2 (including)
CvsCvs1.11.3 (including)1.11.3 (including)
CvsCvs1.11.4 (including)1.11.4 (including)
CvsCvs1.11.5 (including)1.11.5 (including)
CvsCvs1.11.6 (including)1.11.6 (including)
Red Hat Enterprise Linux 3RedHatcvs-0:1.11.2-14*
Red Hat Linux 9RedHat*

References