8.8
CVSSv3

CVE-2015-0853

Published: 06/09/2017 Updated: 09/09/2021
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
CVSS v3 Base Score: 8.8 | Impact Score: 5.9 | Exploitability Score: 2.8
VMScore: 828
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

svn-workbench 1.6.2 and previous versions on a system with xeyes installed allows local users to execute arbitrary commands by using the "Command Shell" menu item while in the directory trunk/$(xeyes).

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

pysvn project svn-workbench

Vendor Advisories

Debian Bug report logs - #798863 CVE-2015-0853: insecure use of ossystem() Package: svn-workbench; Maintainer for svn-workbench is Hideki Yamane <henrich@debianorg>; Source for svn-workbench is src:svn-workbench (PTS, buildd, popcon) Reported by: Luke Faraone <lfaraone@debianorg> Date: Sun, 13 Sep 2015 16:45:01 UT ...