CVE-2004-0405
EPSS 1.4%Published: 6/1/2004Modified: 4/28/2026
Description
CVS before 1.11 allows CVS clients to read arbitrary files via .. (dot dot) sequences in filenames via CVS client requests, a different vulnerability than CVE-2004-0180.
Affected packages (1)
- Debian/cvsfrom 0, < 1:1.12.5-4