Total vulnerabilities in the database
The CVS 1.10.8 client trusts pathnames that are provided by the CVS server, which allows the server to force the client to create arbitrary files.
CVSS v2:
No CWE or OWASP classifications available.