CVE-2010-1326

N/A Unknown
Published: September 15, 2010 Modified: April 29, 2026
View on NVD

Description

perms.cpp in March Hare Software CVSNT 2.0.58, 2.5.01, 2.5.02, 2.5.03 before build 3736, 2.5.04 before build 2862; CVS Suite 2.5.03, 2008 before build 3736, and 2009 before 3729 allows remote attackers to bypass the permissions check, modify arbitrary modules and directories within CVSROOT, and execute arbitrary code via a crafted branch name ACL, possibly related to incorrect inheritance.

AI Explanation

Get an AI-powered plain-language explanation of this vulnerability and remediation steps.

Login to generate AI explanation

References to Advisories, Solutions, and Tools

Patch Vendor Advisory Exploit Third Party Advisory
http://march-hare.com/cvspro/vuln.htm
Source: cve@mitre.org
Vendor Advisory
http://secunia.com/advisories/41345
Source: cve@mitre.org
Vendor Advisory
http://secunia.com/advisories/41358
Source: cve@mitre.org
Vendor Advisory
http://www.vupen.com/english/advisories/2010/2350
Source: cve@mitre.org
Vendor Advisory
http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=593884
Source: af854a3a-2127-422b-91ae-364da2661108
http://march-hare.com/cvspro/vuln.htm
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
http://secunia.com/advisories/41345
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
http://secunia.com/advisories/41358
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
http://www.debian.org/security/2010/dsa-2108
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.vupen.com/english/advisories/2010/2350
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory

14 reference(s) from NVD

Quick Stats

CVSS v3 Score
N/A / 10.0
EPSS (Exploit Probability)
5.1%
91th percentile
Exploitation Status
Not in CISA KEV

Weaknesses (CWE)

Affected Vendors

march-hare