Loading
CVS before 1.11 allows CVS clients to read arbitrary files via .. (dot dot) sequences in filenames via CVS client requests, a different vulnerability than CVE-2004-0180.
Use Cvs vendor hub and Cvs product page to widen CVE-2004-0405 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2012-0804, CVE-2004-0418 and CVE-2004-0416 for nearby disclosures in the same product family.