VYPR

Usvn

by Usvn

Source repositories

CVEs (3)

  • CVE-2024-37879MedSep 20, 2024
    risk 0.24cvss 4.8epss 0.00

    Improper input validation in /admin/config/save in User-friendly SVN (USVN) before v1.0.12 and below allows administrators to execute arbitrary code via the fields "siteTitle", "siteIco" and "siteLogo".

  • CVE-2014-4719Jul 3, 2014
    risk 0.00cvss epss 0.00

    Cross-site scripting (XSS) vulnerability in the login panel (svn/login/) in User-Friendly SVN (aka USVN) before 1.0.7 allows remote attackers to inject arbitrary web script or HTML via the username field.

  • CVE-2007-5945Nov 14, 2007
    risk 0.00cvss epss 0.01

    USVN before 0.6.5 allows remote attackers to obtain a list of repository contents via unspecified vectors.