Записи subversion
7 опубликованных записей вендора subversion.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 1 · 14,3 %
- Pre-auth RCE
- 2
- С записью об исправлении
- 85,7 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Записи по годам
Столбик: всего · тёмная часть: CISA KEV.
Повторяющиеся классы
- CWE-189 Numeric Errors1
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEПрофиль атаки
Все записи
7 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
53В плане | CVE-2004-0397Готовый эксплойт | Stack-based buffer overflow during the apr_time_t data conversion in Subversion 1.0.2 and earlier allows remote attackers to execute arbitrasubversion · subversion | Высокая7,5 | — | 75,3 % | 7 июл. 2004 г. |
42В плане | CVE-2004-0413Эксплойта нет | libsvn_ra_svn in Subversion 1.0.4 trusts the length field of (1) svn://, (2) svn+ssh://, and (3) other svn protocol URL strings, which allowsubversion · subversion | Критическая10,0 | — | 5,9 % | 6 авг. 2004 г. |
36Наблюдать | CVE-2009-2411Эксплойта нет | Multiple integer overflows in the libsvn_delta library in Subversion before 1.5.7, and 1.6.x before 1.6.4, allow remote authenticated users subversion · subversion · CWE-189 | Высокая8,5 | — | 5,1 % | 7 авг. 2009 г. |
24Наблюдать | CVE-2007-3846Эксплойта нет | Directory traversal vulnerability in Subversion before 1.4.5, as used by TortoiseSVN before 1.4.5 and possibly other products, when run on Wsubversion · subversion · CWE-22 | Средняя6,0 | — | 1,6 % | 28 авг. 2007 г. |
20Наблюдать | CVE-2004-0749Эксплойта нет | The mod_authz_svn module in Subversion 1.0.7 and earlier does not properly restrict access to all metadata on unreadable paths, which could subversion · subversion | Средняя5,0 | — | 1,5 % | 23 дек. 2004 г. |
8Наблюдать | CVE-2007-2448Эксплойта нет | Subversion 1.4.3 and earlier does not properly implement the "partial access" privilege for users who have access to changed paths but not csubversion · subversion | Низкая2,1 | — | 1,5 % | 14 июн. 2007 г. |
8Наблюдать | CVE-2004-1438Эксплойта нет | The mod_authz_svn Apache module for Subversion 1.0.4-r1 and earlier allows remote authenticated users, with write access to the repository, subversion · subversion | Низкая2,1 | — | 0,7 % | 31 дек. 2004 г. |
- CVE-2004-039753В плане
Stack-based buffer overflow during the apr_time_t data conversion in Subversion 1.0.2 and earlier allows remote attackers to execute arbitra
ВысокаяCVSS 7,5Готовый эксплойтEPSS 75 %subversion · subversion7 июл. 2004 г.
- CVE-2004-041342В плане
libsvn_ra_svn in Subversion 1.0.4 trusts the length field of (1) svn://, (2) svn+ssh://, and (3) other svn protocol URL strings, which allow
КритическаяCVSS 10,0Эксплойта нетEPSS 6 %subversion · subversion6 авг. 2004 г.
- CVE-2009-241136Наблюдать
Multiple integer overflows in the libsvn_delta library in Subversion before 1.5.7, and 1.6.x before 1.6.4, allow remote authenticated users
ВысокаяCVSS 8,5Эксплойта нетEPSS 5 %subversion · subversion7 авг. 2009 г.
- CVE-2007-384624Наблюдать
Directory traversal vulnerability in Subversion before 1.4.5, as used by TortoiseSVN before 1.4.5 and possibly other products, when run on W
СредняяCVSS 6,0Эксплойта нетEPSS 2 %subversion · subversion28 авг. 2007 г.
- CVE-2004-074920Наблюдать
The mod_authz_svn module in Subversion 1.0.7 and earlier does not properly restrict access to all metadata on unreadable paths, which could
СредняяCVSS 5,0Эксплойта нетEPSS 1 %subversion · subversion23 дек. 2004 г.
- CVE-2007-24488Наблюдать
Subversion 1.4.3 and earlier does not properly implement the "partial access" privilege for users who have access to changed paths but not c
НизкаяCVSS 2,1Эксплойта нетEPSS 2 %subversion · subversion14 июн. 2007 г.
- CVE-2004-14388Наблюдать
The mod_authz_svn Apache module for Subversion 1.0.4-r1 and earlier allows remote authenticated users, with write access to the repository,
НизкаяCVSS 2,1Эксплойта нетEPSS 1 %subversion · subversion31 дек. 2004 г.