Websvn
by Websvn
CVEs (4)
| CVE | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|
| CVE-2016-2511 | Med | 0.40 | 6.1 | 0.01 | Apr 7, 2016 | Cross-site scripting (XSS) vulnerability in WebSVN 2.3.3 and earlier allows remote attackers to inject arbitrary web script or HTML via the path parameter to log.php. | |
| CVE-2013-6892 | 0.00 | — | 0.00 | Jan 21, 2015 | WebSVN 2.3.3 allows remote authenticated users to read arbitrary files via a symlink attack in a commit. | ||
| CVE-2011-5221 | 0.00 | — | 0.01 | Oct 25, 2012 | Cross-site scripting (XSS) vulnerability in the getLog function in svnlook.php in WebSVN before 2.3.1 allows remote attackers to inject arbitrary web script or HTML via the path parameter to (1) comp.php, (2) diff.php, or (3) revision.php. | ||
| CVE-2007-3056 | 0.00 | — | 0.01 | Jun 6, 2007 | Cross-site scripting (XSS) vulnerability in filedetails.php in WebSVN 2.0rc4, and possibly earlier, allows remote attackers to inject arbitrary web script or HTML via the path parameter. |
- risk 0.40cvss 6.1epss 0.01
Cross-site scripting (XSS) vulnerability in WebSVN 2.3.3 and earlier allows remote attackers to inject arbitrary web script or HTML via the path parameter to log.php.
- CVE-2013-6892Jan 21, 2015risk 0.00cvss —epss 0.00
WebSVN 2.3.3 allows remote authenticated users to read arbitrary files via a symlink attack in a commit.
- CVE-2011-5221Oct 25, 2012risk 0.00cvss —epss 0.01
Cross-site scripting (XSS) vulnerability in the getLog function in svnlook.php in WebSVN before 2.3.1 allows remote attackers to inject arbitrary web script or HTML via the path parameter to (1) comp.php, (2) diff.php, or (3) revision.php.
- CVE-2007-3056Jun 6, 2007risk 0.00cvss —epss 0.01
Cross-site scripting (XSS) vulnerability in filedetails.php in WebSVN 2.0rc4, and possibly earlier, allows remote attackers to inject arbitrary web script or HTML via the path parameter.