Show filters
23 Total Results
Displaying 11-20 of 23
Sort by:
Attacker Value
Unknown

CVE-2013-1968

Disclosure Date: July 31, 2013 (last updated October 05, 2023)
Subversion before 1.6.23 and 1.7.x before 1.7.10 allows remote authenticated users to cause a denial of service (FSFS repository corruption) via a newline character in a file name.
0
Attacker Value
Unknown

CVE-2013-2112

Disclosure Date: July 31, 2013 (last updated October 05, 2023)
The svnserve server in Subversion before 1.6.23 and 1.7.x before 1.7.10 allows remote attackers to cause a denial of service (exit) by aborting a connection.
0
Attacker Value
Unknown

CVE-2013-2088

Disclosure Date: July 31, 2013 (last updated October 05, 2023)
contrib/hook-scripts/svn-keyword-check.pl in Subversion before 1.6.23 allows remote authenticated users with commit permissions to execute arbitrary commands via shell metacharacters in a filename.
0
Attacker Value
Unknown

CVE-2013-1849

Disclosure Date: May 02, 2013 (last updated October 05, 2023)
The mod_dav_svn Apache HTTPD server module in Subversion 1.6.x through 1.6.20 and 1.7.0 through 1.7.8 allows remote attackers to cause a denial of service (NULL pointer dereference and crash) via a PROPFIND request for an activity URL.
0
Attacker Value
Unknown

CVE-2013-1845

Disclosure Date: May 02, 2013 (last updated October 05, 2023)
The mod_dav_svn Apache HTTPD server module in Subversion 1.6.x before 1.6.21 and 1.7.0 through 1.7.8 allows remote authenticated users to cause a denial of service (memory consumption) by (1) setting or (2) deleting a large number of properties for a file or directory.
0
Attacker Value
Unknown

CVE-2013-1846

Disclosure Date: May 02, 2013 (last updated October 05, 2023)
The mod_dav_svn Apache HTTPD server module in Subversion 1.6.x before 1.6.21 and 1.7.0 through 1.7.8 allows remote authenticated users to cause a denial of service (NULL pointer dereference and crash) via a LOCK on an activity URL.
0
Attacker Value
Unknown

CVE-2013-1847

Disclosure Date: May 02, 2013 (last updated October 05, 2023)
The mod_dav_svn Apache HTTPD server module in Subversion 1.6.0 through 1.6.20 and 1.7.0 through 1.7.8 allows remote attackers to cause a denial of service (NULL pointer dereference and crash) via an anonymous LOCK for a URL that does not exist.
0
Attacker Value
Unknown

CVE-2011-1921

Disclosure Date: June 06, 2011 (last updated October 04, 2023)
The mod_dav_svn module for the Apache HTTP Server, as distributed in Apache Subversion 1.5.x and 1.6.x before 1.6.17, when the SVNPathAuthz short_circuit option is disabled, does not properly enforce permissions for files that had been publicly readable in the past, which allows remote attackers to obtain sensitive information via a replay REPORT operation.
0
Attacker Value
Unknown

CVE-2011-0715

Disclosure Date: March 11, 2011 (last updated October 04, 2023)
The mod_dav_svn module for the Apache HTTP Server, as distributed in Apache Subversion before 1.6.16, allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via a request that contains a lock token.
0
Attacker Value
Unknown

CVE-2010-4539

Disclosure Date: January 07, 2011 (last updated October 04, 2023)
The walk function in repos.c in the mod_dav_svn module for the Apache HTTP Server, as distributed in Apache Subversion before 1.6.15, allows remote authenticated users to cause a denial of service (NULL pointer dereference and daemon crash) via vectors that trigger the walking of SVNParentPath collections.
0