CVE-2008-1291
EUVD-2008-129824.03.2008, 17:44
ViewVC before 1.0.5 stores sensitive information under the web root with insufficient access control, which allows remote attackers to read files and list folders under the hidden CVSROOT folder.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| viewvc | viewvc | 1.0.2 |
| viewvc | viewvc | 1.0.3 |
𝑥
= Vulnerable software versions
Ubuntu Releases
Ubuntu Product | |||||||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| viewcvs |
| ||||||||||||||||||||||||
| viewvc |
|
Common Weakness Enumeration
References