Lucene search

K
nvd[email protected]NVD:CVE-2012-3356
HistoryJul 22, 2012 - 4:55 p.m.

CVE-2012-3356

2012-07-2216:55:39
CWE-287
web.nvd.nist.gov
5

CVSS2

5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:L/Au:N/C:N/I:P/A:N

AI Score

6.5

Confidence

Low

EPSS

0.007

Percentile

79.9%

The remote SVN views functionality (lib/vclib/svn/svn_ra.py) in ViewVC before 1.1.15 does not properly perform authorization, which allows remote attackers to bypass intended access restrictions via unspecified vectors.

Affected configurations

Nvd
Node
viewvcviewvcRange1.1.14
OR
viewvcviewvcMatch0.8
OR
viewvcviewvcMatch0.9
OR
viewvcviewvcMatch0.9.1
OR
viewvcviewvcMatch0.9.2
OR
viewvcviewvcMatch0.9.3
OR
viewvcviewvcMatch0.9.4
OR
viewvcviewvcMatch1.0.0
OR
viewvcviewvcMatch1.0.1
OR
viewvcviewvcMatch1.0.2
OR
viewvcviewvcMatch1.0.3
OR
viewvcviewvcMatch1.0.4
OR
viewvcviewvcMatch1.0.5
OR
viewvcviewvcMatch1.0.6
OR
viewvcviewvcMatch1.0.7
OR
viewvcviewvcMatch1.0.8
OR
viewvcviewvcMatch1.0.9
OR
viewvcviewvcMatch1.0.10
OR
viewvcviewvcMatch1.0.11
OR
viewvcviewvcMatch1.1.0
OR
viewvcviewvcMatch1.1.1
OR
viewvcviewvcMatch1.1.2
OR
viewvcviewvcMatch1.1.3
OR
viewvcviewvcMatch1.1.4
OR
viewvcviewvcMatch1.1.5
OR
viewvcviewvcMatch1.1.6
OR
viewvcviewvcMatch1.1.7
OR
viewvcviewvcMatch1.1.8
OR
viewvcviewvcMatch1.1.9
OR
viewvcviewvcMatch1.1.10
OR
viewvcviewvcMatch1.1.11
OR
viewvcviewvcMatch1.1.12
OR
viewvcviewvcMatch1.1.13
VendorProductVersionCPE
viewvcviewvc*cpe:2.3:a:viewvc:viewvc:*:*:*:*:*:*:*:*
viewvcviewvc0.8cpe:2.3:a:viewvc:viewvc:0.8:*:*:*:*:*:*:*
viewvcviewvc0.9cpe:2.3:a:viewvc:viewvc:0.9:*:*:*:*:*:*:*
viewvcviewvc0.9.1cpe:2.3:a:viewvc:viewvc:0.9.1:*:*:*:*:*:*:*
viewvcviewvc0.9.2cpe:2.3:a:viewvc:viewvc:0.9.2:*:*:*:*:*:*:*
viewvcviewvc0.9.3cpe:2.3:a:viewvc:viewvc:0.9.3:*:*:*:*:*:*:*
viewvcviewvc0.9.4cpe:2.3:a:viewvc:viewvc:0.9.4:*:*:*:*:*:*:*
viewvcviewvc1.0.0cpe:2.3:a:viewvc:viewvc:1.0.0:*:*:*:*:*:*:*
viewvcviewvc1.0.1cpe:2.3:a:viewvc:viewvc:1.0.1:*:*:*:*:*:*:*
viewvcviewvc1.0.2cpe:2.3:a:viewvc:viewvc:1.0.2:*:*:*:*:*:*:*
Rows per page:
1-10 of 331

CVSS2

5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:L/Au:N/C:N/I:P/A:N

AI Score

6.5

Confidence

Low

EPSS

0.007

Percentile

79.9%