PT-2021-8348 · Websvn · Websvn

Nospam

·

Published

2021-10-26

·

Updated

2021-10-29

·

CVE-2011-2195

CVSS v2.0

9.3

High

VectorAV:N/AC:M/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions WebSVN version 2.3.2
Description A flaw was found in WebSVN. Without prior authentication, if the allowDownload option is enabled in config.php, an attacker can invoke the "dl.php" script and pass a well-formed path argument to execute arbitrary commands against the underlying operating system.
Recommendations For WebSVN version 2.3.2, consider disabling the allowDownload option in config.php as a temporary workaround to prevent exploitation. Restrict access to the dl.php script to minimize the risk of arbitrary command execution. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

OS Command Injection

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2011-2195

Affected Products

Websvn