PT-2003-1986 · Cvs · Cvs Server

Published

2003-12-10

·

Updated

2017-10-11

·

CVE-2003-0977

CVSS v2.0

7.5

High

VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions CVS server versions prior to 1.11.10
Description The issue allows attackers to cause the CVS server to create directories and files in the file system root directory via malformed module requests.
Recommendations For versions prior to 1.11.10, update to version 1.11.10 or later to resolve the issue.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2003-0977
RHSA-2004:004

Affected Products

Cvs Server