Lucene search

K
nessusTenable800980.PRM
HistoryJun 04, 2013 - 12:00 a.m.

Apache Subversion < 1.8.0 / 1.7.10 / 1.6.23 Multiple Vulnerabilities

2013-06-0400:00:00
Tenable
www.tenable.com
13

7.8 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:N/I:N/A:C

0.015 Low

EPSS

Percentile

87.2%

The installed version of SVN is affected by the following vulnerabilities:

  • Remote denial-of-service vulnerabilities exist due to an error in the svnserve server, as it does not properly handle aborted connection messages. (CVE-2013-1968, CVE-2013-2112)

  • A command-injection vulnerability exists in the โ€˜svn-keyword-check.plโ€™ hook script while processing filenames. (CVE-2013-2088)

Binary data 800980.prm

7.8 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:N/I:N/A:C

0.015 Low

EPSS

Percentile

87.2%