CVE-2008-1291
24.03.2008, 17:44
ViewVC before 1.0.5 stores sensitive information under the web root with insufficient access control, which allows remote attackers to read files and list folders under the hidden CVSROOT folder.Enginsight
Vendor | Product | Version |
---|---|---|
viewvc | viewvc | 1.0.2 |
viewvc | viewvc | 1.0.3 |
𝑥
= Vulnerable software versions

Ubuntu Releases
Ubuntu Product | |||||||||||||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
viewcvs |
| ||||||||||||||||||||||||
viewvc |
|
Common Weakness Enumeration
References