Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
By Recent Activity
apache subversion 1.8.0 vulnerabilities and exploits
(subscribe to this query)
2.4
CVSSv2
CVE-2013-4262
svnwcsub.py in Subversion 1.8.0 before 1.8.3, when using the --pidfile option and running in foreground mode, allows local users to gain privileges via a symlink attack on the pid file. NOTE: this issue was SPLIT due to different affected versions (ADT3). The irkerbridge.py...
Apache Subversion 1.8.0
Apache Subversion 1.8.1
Apache Subversion 1.8.2
6.5
CVSSv2
CVE-2013-4246
libsvn_fs_fs/fs_fs.c in Apache Subversion 1.8.x before 1.8.2 might allow remote authenticated users with commit access to corrupt FSFS repositories and cause a denial of service or obtain sensitive information by editing packed revision properties....
Apache Subversion 1.8.0
Apache Subversion 1.8.1
2.4
CVSSv2
CVE-2013-7393
The daemonize.py module in Subversion 1.8.0 before 1.8.2 allows local users to gain privileges via a symlink attack on the pid file created for (1) svnwcsub.py or (2) irkerbridge.py when the --pidfile option is used. NOTE: this issue was SPLIT from CVE-2013-4262 based on...
Apache Subversion 1.8.0
Apache Subversion 1.8.1
4.3
CVSSv2
CVE-2014-0032
The get_resource function in repos.c in the mod_dav_svn module in Apache Subversion before 1.7.15 and 1.8.x before 1.8.6, when SVNListParentPath is enabled, allows remote attackers to cause a denial of service (crash) via vectors related to the server root and request methods...
Apache Subversion 1.8.0
Apache Subversion 1.8.1
Apache Subversion 1.8.2
Apache Subversion 1.8.3
Apache Subversion 1.8.4
Apache Subversion 1.8.5
Apache Subversion 1.7.0
Apache Subversion 1.7.1
Apache Subversion 1.7.2
Apache Subversion 1.7.3
Apache Subversion 1.7.4
Apache Subversion 1.7.5
Apache Subversion 1.7.6
Apache Subversion 1.7.7
Apache Subversion 1.7.8
Apache Subversion 1.7.9
Apache Subversion 1.7.10
Apache Subversion 1.7.11
Apache Subversion 1.7.12
Apache Subversion 1.7.13
Apache Subversion
4
CVSSv2
CVE-2013-4131
The mod_dav_svn Apache HTTPD server module in Subversion 1.7.0 through 1.7.10 and 1.8.x before 1.8.1 allows remote authenticated users to cause a denial of service (assertion failure or out-of-bounds read) via a certain (1) COPY, (2) DELETE, or (3) MOVE request against a...
Apache Subversion 1.7.0
Apache Subversion 1.7.1
Apache Subversion 1.7.2
Apache Subversion 1.7.3
Apache Subversion 1.7.4
Apache Subversion 1.7.5
Apache Subversion 1.7.6
Apache Subversion 1.7.7
Apache Subversion 1.7.8
Apache Subversion 1.7.9
Apache Subversion 1.7.10
Apache Subversion 1.8.0
5
CVSSv2
CVE-2015-3184
mod_authz_svn in Apache Subversion 1.7.x before 1.7.21 and 1.8.x before 1.8.14, when using Apache httpd 2.4.x, does not properly restrict anonymous access, which allows remote anonymous users to read hidden files via the path name....
Apple Xcode
Apache Subversion 1.7.0
Apache Subversion 1.7.1
Apache Subversion 1.7.2
Apache Subversion 1.7.3
Apache Subversion 1.7.4
Apache Subversion 1.7.5
Apache Subversion 1.7.6
Apache Subversion 1.7.7
Apache Subversion 1.7.8
Apache Subversion 1.7.9
Apache Subversion 1.7.10
Apache Subversion 1.7.11
Apache Subversion 1.7.12
Apache Subversion 1.7.13
Apache Subversion 1.7.14
Apache Subversion 1.7.15
Apache Subversion 1.7.16
Apache Subversion 1.7.17
Apache Subversion 1.7.18
Apache Subversion 1.7.19
Apache Subversion 1.7.20
Apache Subversion 1.8.0
Apache Subversion 1.8.1
Apache Subversion 1.8.2
Apache Subversion 1.8.3
Apache Subversion 1.8.4
Apache Subversion 1.8.5
Apache Subversion 1.8.6
Apache Subversion 1.8.7
Apache Subversion 1.8.8
Apache Subversion 1.8.9
Apache Subversion 1.8.10
Apache Subversion 1.8.11
Apache Subversion 1.8.13
7.8
CVSSv2
CVE-2015-0202
The mod_dav_svn server in Subversion 1.8.0 through 1.8.11 allows remote attackers to cause a denial of service (memory consumption) via a large number of REPORT requests, which trigger the traversal of FSFS repository nodes....
Apache Subversion 1.8.0
Apache Subversion 1.8.1
Apache Subversion 1.8.2
Apache Subversion 1.8.3
Apache Subversion 1.8.4
Apache Subversion 1.8.5
Apache Subversion 1.8.6
Apache Subversion 1.8.7
Apache Subversion 1.8.8
Apache Subversion 1.8.9
Apache Subversion 1.8.10
Apache Subversion 1.8.11
Opensuse Opensuse 13.1
Opensuse Opensuse 13.2
4
CVSSv2
CVE-2015-0251
The mod_dav_svn server in Subversion 1.5.0 through 1.7.19 and 1.8.0 through 1.8.11 allows remote authenticated users to spoof the svn:author property via a crafted v1 HTTP protocol request sequences....
Apache Subversion 1.5.0
Apache Subversion 1.5.1
Apache Subversion 1.5.2
Apache Subversion 1.5.3
Apache Subversion 1.5.4
Apache Subversion 1.5.5
Apache Subversion 1.5.6
Apache Subversion 1.5.7
Apache Subversion 1.5.8
Apache Subversion 1.6.0
Apache Subversion 1.6.1
Apache Subversion 1.6.2
Apache Subversion 1.6.3
Apache Subversion 1.6.4
Apache Subversion 1.6.5
Apache Subversion 1.6.6
Apache Subversion 1.6.7
Apache Subversion 1.6.8
Apache Subversion 1.6.9
Apache Subversion 1.6.10
Apache Subversion 1.6.11
Apache Subversion 1.6.12
Apache Subversion 1.6.13
Apache Subversion 1.6.14
Apache Subversion 1.6.15
Apache Subversion 1.6.16
Apache Subversion 1.6.17
Apache Subversion 1.6.18
Apache Subversion 1.6.19
Apache Subversion 1.6.20
Apache Subversion 1.6.21
Apache Subversion 1.6.23
Apache Subversion 1.7.0
Apache Subversion 1.7.1
Apache Subversion 1.7.2
Apache Subversion 1.7.3
Apache Subversion 1.7.4
Apache Subversion 1.7.5
Apache Subversion 1.7.6
Apache Subversion 1.7.7
Apache Subversion 1.7.8
Apache Subversion 1.7.9
Apache Subversion 1.7.10
Apache Subversion 1.7.11
Apache Subversion 1.7.12
Apache Subversion 1.7.13
Apache Subversion 1.7.14
Apache Subversion 1.7.15
Apache Subversion 1.7.16
Apache Subversion 1.7.17
Apache Subversion 1.7.18
Apache Subversion 1.7.19
Apache Subversion 1.8.0
Apache Subversion 1.8.1
Apache Subversion 1.8.2
Apache Subversion 1.8.3
Apache Subversion 1.8.4
Apache Subversion 1.8.5
Apache Subversion 1.8.6
Apache Subversion 1.8.7
Apache Subversion 1.8.8
Apache Subversion 1.8.9
Apache Subversion 1.8.10
Apache Subversion 1.8.11
Opensuse Opensuse 13.1
Opensuse Opensuse 13.2
Redhat Enterprise Linux Desktop 6.0
Redhat Enterprise Linux Hpc Node 6.0
Redhat Enterprise Linux Server 6.0
Redhat Enterprise Linux Server Eus 6.7.z
Redhat Enterprise Linux Workstation 6.0
Oracle Solaris 11.3
Apple Xcode 7.0
2.6
CVSSv2
CVE-2013-4505
The is_this_legal function in mod_dontdothat for Apache Subversion 1.4.0 through 1.7.13 and 1.8.0 through 1.8.4 allows remote attackers to bypass intended access restrictions and possibly cause a denial of service (resource consumption) via a relative URL in a REPORT request....
Apache Mod Dontdothat -
Apache Subversion 1.4.0
Apache Subversion 1.4.1
Apache Subversion 1.4.2
Apache Subversion 1.4.3
Apache Subversion 1.4.4
Apache Subversion 1.4.5
Apache Subversion 1.4.6
Apache Subversion 1.5.0
Apache Subversion 1.5.1
Apache Subversion 1.5.2
Apache Subversion 1.5.3
Apache Subversion 1.5.4
Apache Subversion 1.5.5
Apache Subversion 1.5.6
Apache Subversion 1.5.7
Apache Subversion 1.5.8
Apache Subversion 1.6.0
Apache Subversion 1.6.1
Apache Subversion 1.6.2
Apache Subversion 1.6.3
Apache Subversion 1.6.4
Apache Subversion 1.6.5
Apache Subversion 1.6.6
Apache Subversion 1.6.7
Apache Subversion 1.6.8
Apache Subversion 1.6.9
Apache Subversion 1.6.10
Apache Subversion 1.6.11
Apache Subversion 1.6.12
Apache Subversion 1.6.13
Apache Subversion 1.6.14
Apache Subversion 1.6.15
Apache Subversion 1.6.16
Apache Subversion 1.6.17
Apache Subversion 1.6.18
Apache Subversion 1.6.19
Apache Subversion 1.6.20
Apache Subversion 1.6.21
Apache Subversion 1.6.23
Apache Subversion 1.7.0
Apache Subversion 1.7.1
Apache Subversion 1.7.2
Apache Subversion 1.7.3
Apache Subversion 1.7.4
Apache Subversion 1.7.5
Apache Subversion 1.7.6
Apache Subversion 1.7.7
Apache Subversion 1.7.8
Apache Subversion 1.7.9
Apache Subversion 1.7.10
Apache Subversion 1.7.11
Apache Subversion 1.7.12
Apache Subversion 1.8.1
4
CVSSv2
CVE-2016-8734
Apache Subversion's mod_dontdothat module and HTTP clients 1.4.0 through 1.8.16, and 1.9.0 through 1.9.4 are vulnerable to a denial-of-service attack caused by exponential XML entity expansion. The attack can cause the targeted process to consume an excessive amount of CPU...
Apache Subversion 1.4.0
Apache Subversion 1.4.1
Apache Subversion 1.4.2
Apache Subversion 1.4.3
Apache Subversion 1.4.4
Apache Subversion 1.4.5
Apache Subversion 1.4.6
Apache Subversion 1.5.0
Apache Subversion 1.5.1
Apache Subversion 1.5.2
Apache Subversion 1.5.3
Apache Subversion 1.5.4
Apache Subversion 1.5.5
Apache Subversion 1.5.6
Apache Subversion 1.5.7
Apache Subversion 1.5.8
Apache Subversion 1.6.0
Apache Subversion 1.6.1
Apache Subversion 1.6.2
Apache Subversion 1.6.3
Apache Subversion 1.6.4
Apache Subversion 1.6.5
Apache Subversion 1.6.6
Apache Subversion 1.6.7
Apache Subversion 1.6.8
Apache Subversion 1.6.9
Apache Subversion 1.6.10
Apache Subversion 1.6.11
Apache Subversion 1.6.12
Apache Subversion 1.6.13
Apache Subversion 1.6.14
Apache Subversion 1.6.15
Apache Subversion 1.6.16
Apache Subversion 1.6.17
Apache Subversion 1.6.18
Apache Subversion 1.6.19
Apache Subversion 1.6.20
Apache Subversion 1.6.21
Apache Subversion 1.6.23
Apache Subversion 1.7.0
Apache Subversion 1.7.1
Apache Subversion 1.7.2
Apache Subversion 1.7.3
Apache Subversion 1.7.4
Apache Subversion 1.7.5
Apache Subversion 1.7.6
Apache Subversion 1.7.7
Apache Subversion 1.7.8
Apache Subversion 1.7.9
Apache Subversion 1.7.10
Apache Subversion 1.7.11
Apache Subversion 1.7.12
Apache Subversion 1.7.13
Apache Subversion 1.7.14
Apache Subversion 1.7.15
Apache Subversion 1.7.16
Apache Subversion 1.7.17
Apache Subversion 1.7.18
Apache Subversion 1.7.19
Apache Subversion 1.7.20
Apache Subversion 1.8.0
Apache Subversion 1.8.1
Apache Subversion 1.8.2
Apache Subversion 1.8.3
Apache Subversion 1.8.4
Apache Subversion 1.8.5
Apache Subversion 1.8.6
Apache Subversion 1.8.7
Apache Subversion 1.8.8
Apache Subversion 1.8.9
Apache Subversion 1.8.10
Apache Subversion 1.8.11
Apache Subversion 1.8.12
Apache Subversion 1.8.13
Apache Subversion 1.8.14
Apache Subversion 1.8.15
Apache Subversion 1.8.16
Apache Subversion 1.9.0
Apache Subversion 1.9.1
Apache Subversion 1.9.2
Apache Subversion 1.9.3
Apache Subversion 1.9.4
Debian Debian Linux 8.0
Debian Debian Linux 9.0
1 Github repository available
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
byte struct
XSS
CVE-2021-27065
byte struct project
quinn
NULL pointer dereference
CVE-2021-25336
CVE-2021-27907
CVE-2021-26858
CVE-2021-25339
local users
internment
CVE-2021-28032
1
2
NEXT »