PT-2021-8348 · Websvn · Websvn
Nospam
·
Published
2021-10-26
·
Updated
2021-10-29
·
CVE-2011-2195
CVSS v2.0
9.3
High
| Vector | AV:N/AC:M/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
WebSVN version 2.3.2
Description
A flaw was found in WebSVN. Without prior authentication, if the
allowDownload option is enabled in config.php, an attacker can invoke the "dl.php" script and pass a well-formed path argument to execute arbitrary commands against the underlying operating system.Recommendations
For WebSVN version 2.3.2, consider disabling the
allowDownload option in config.php as a temporary workaround to prevent exploitation. Restrict access to the dl.php script to minimize the risk of arbitrary command execution. At the moment, there is no information about a newer version that contains a fix for this vulnerability.Exploit
OS Command Injection
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Websvn