Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2015-3184

Опубликовано: 12 авг. 2015
Источник: debian
EPSS Средний

Описание

mod_authz_svn in Apache Subversion 1.7.x before 1.7.21 and 1.8.x before 1.8.14, when using Apache httpd 2.4.x, does not properly restrict anonymous access, which allows remote anonymous users to read hidden files via the path name.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
subversionfixed1.9.0-1package
subversionnot-affectedwheezypackage
subversionnot-affectedsqueezepackage

Примечания

  • https://subversion.apache.org/security/CVE-2015-3184-advisory.txt

  • subversion needs to be built with a fixed apache version

EPSS

Процентиль: 96%
0.22431
Средний

Связанные уязвимости

ubuntu
около 10 лет назад

mod_authz_svn in Apache Subversion 1.7.x before 1.7.21 and 1.8.x before 1.8.14, when using Apache httpd 2.4.x, does not properly restrict anonymous access, which allows remote anonymous users to read hidden files via the path name.

redhat
около 10 лет назад

mod_authz_svn in Apache Subversion 1.7.x before 1.7.21 and 1.8.x before 1.8.14, when using Apache httpd 2.4.x, does not properly restrict anonymous access, which allows remote anonymous users to read hidden files via the path name.

nvd
около 10 лет назад

mod_authz_svn in Apache Subversion 1.7.x before 1.7.21 and 1.8.x before 1.8.14, when using Apache httpd 2.4.x, does not properly restrict anonymous access, which allows remote anonymous users to read hidden files via the path name.

github
больше 3 лет назад

mod_authz_svn in Apache Subversion 1.7.x before 1.7.21 and 1.8.x before 1.8.14, when using Apache httpd 2.4.x, does not properly restrict anonymous access, which allows remote anonymous users to read hidden files via the path name.

suse-cvrf
около 10 лет назад

Security update for subversion

EPSS

Процентиль: 96%
0.22431
Средний