Loading
The client for CVS before 1.11 allows a remote malicious CVS server to create arbitrary files using certain RCS diff files that use absolute pathnames during checkouts or updates, a different vulnerability than CVE-2004-0405.
Use Cvs vendor hub and Cvs product page to widen CVE-2004-0180 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2012-0804, CVE-2004-0418 and CVE-2004-0416 for nearby disclosures in the same product family.