2.4
CVSSv2

CVE-2013-4262

Published: 28/07/2014 Updated: 18/10/2016
CVSS v2 Base Score: 2.4 | Impact Score: 4.9 | Exploitability Score: 1.5
VMScore: 214
Vector: AV:L/AC:H/Au:S/C:N/I:P/A:P

Vulnerability Summary

svnwcsub.py in Subversion 1.8.0 prior to 1.8.3, when using the --pidfile option and running in foreground mode, allows local users to gain privileges via a symlink attack on the pid file. NOTE: this issue was SPLIT due to different affected versions (ADT3). The irkerbridge.py issue is covered by CVE-2013-7393.

Vulnerable Product Search on Vulmon Subscribe to Product

apache subversion 1.8.0

apache subversion 1.8.1

apache subversion 1.8.2

Vendor Advisories

svnwcsubpy in Subversion 180 before 183, when using the --pidfile option and running in foreground mode, allows local users to gain privileges via a symlink attack on the pid file NOTE: this issue was SPLIT due to different affected versions (ADT3) The irkerbridgepy issue is covered by CVE-2013-7393 ...