CVE Vulnerabilities

CVE-2003-0977

Published: Jan 05, 2004 | Modified: Oct 11, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

CVS server before 1.11.10 may allow attackers to cause the CVS server to create directories and files in the file system root directory via malformed module requests.

Affected Software

Name Vendor Start Version End Version
Cvs Cvs 1.10.7 1.10.7
Cvs Cvs 1.10.8 1.10.8
Cvs Cvs 1.11 1.11
Cvs Cvs 1.11.1 1.11.1
Cvs Cvs 1.11.1_p1 1.11.1_p1
Cvs Cvs 1.11.2 1.11.2
Cvs Cvs 1.11.3 1.11.3
Cvs Cvs 1.11.4 1.11.4
Cvs Cvs 1.11.5 1.11.5
Cvs Cvs 1.11.6 1.11.6
Red Hat Enterprise Linux 3 RedHat cvs-0:1.11.2-14 *

References