Back to search
CVE-2004-0405
Published: Apr 17, 2004
Modified: Aug 8, 2024
PUBLISHED
Description
CVS before 1.11 allows CVS clients to read arbitrary files via .. (dot dot) sequences in filenames via CVS client requests, a different vulnerability than CVE-2004-0180.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
oval:org.mitre.oval:def:1060
vdb-entry
signature
x_refsource_OVAL
cvs-dotdot-directory-traversal(15891)
vdb-entry
x_refsource_XF
DSA-486
vendor-advisory
x_refsource_DEBIAN
SSA:2004-108-02
vendor-advisory
x_refsource_SLACKWARE
GLSA-200404-13
vendor-advisory
x_refsource_GENTOO
oval:org.mitre.oval:def:10818
vdb-entry
signature
x_refsource_OVAL
FEDORA-2004-1620
vendor-advisory
x_refsource_FEDORA
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now