Alias(es)Subversion.Bypass.Access.Control |
Release DateSep 11, 2006 |
Severitymedium |
ImpactUnauthorized access to protected files |
DescriptionThis indicates a potential vulnerability with the Subversion system installed on your machine. Subversion is an open-source project for version control purpose. Due to access control implementation errors, a low-privilege user can access to high-privilege information stored in the depository. |
Affected ProductsSubversion versions up to and including 1.0.5 |
Recommended ActionsApply appropriate patches or upgrade the system to the latest non-vulnerable version |
Coverage IPS
VCM |
Common Vulnerabilities and Exposures (CVE)CVE-2004-9998 |
Reference/shttp://www.securityfocus.com/bid/10800 (BugTraq)http://securitytracker.com/id?1010779 http://subversion.tigris.org/security/mod_authz_svn-copy-advisory.txt |