
Find real vulnerabilities before they ship
The CVS 1.10.8 client trusts pathnames that are provided by the CVS server, which allows the server to force the client to create arbitrary files.
| Base Score | 2.1 |
|---|---|
| Vector String | AV:L/AC:L/Au:N/C:N/I:P/A:N |
| Base Severity | Unknown |
| Version | 2.0 |
| Attack Vector (AV) |