Логотип exploitDog
bind:CVE-2024-45720
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2024-45720

Количество 5

Количество 5

ubuntu логотип

CVE-2024-45720

больше 1 года назад

On Windows platforms, a "best fit" character encoding conversion of command line arguments to Subversion's executables (e.g., svn.exe, etc.) may lead to unexpected command line argument interpretation, including argument injection and execution of other programs, if a specially crafted command line argument string is processed. All versions of Subversion up to and including Subversion 1.14.3 are affected on Windows platforms only. Users are recommended to upgrade to version Subversion 1.14.4, which fixes this issue. Subversion is not affected on UNIX-like platforms.

CVSS3: 8.2
EPSS: Низкий
nvd логотип

CVE-2024-45720

больше 1 года назад

On Windows platforms, a "best fit" character encoding conversion of command line arguments to Subversion's executables (e.g., svn.exe, etc.) may lead to unexpected command line argument interpretation, including argument injection and execution of other programs, if a specially crafted command line argument string is processed. All versions of Subversion up to and including Subversion 1.14.3 are affected on Windows platforms only. Users are recommended to upgrade to version Subversion 1.14.4, which fixes this issue. Subversion is not affected on UNIX-like platforms.

CVSS3: 8.2
EPSS: Низкий
msrc логотип

CVE-2024-45720

5 месяцев назад

Apache Subversion: Command line argument injection on Windows platforms

EPSS: Низкий
debian логотип

CVE-2024-45720

больше 1 года назад

On Windows platforms, a "best fit" character encoding conversion of co ...

CVSS3: 8.2
EPSS: Низкий
github логотип

GHSA-86vm-fj76-qh69

больше 1 года назад

On Windows platforms, a "best fit" character encoding conversion of command line arguments to Subversion's executables (e.g., svn.exe, etc.) may lead to unexpected command line argument interpretation, including argument injection and execution of other programs, if a specially crafted command line argument string is processed. All versions of Subversion up to and including Subversion 1.14.3 are affected on Windows platforms only. Users are recommended to upgrade to version Subversion 1.14.4, which fixes this issue. Subversion is not affected on UNIX-like platforms.

CVSS3: 8.2
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2024-45720

On Windows platforms, a "best fit" character encoding conversion of command line arguments to Subversion's executables (e.g., svn.exe, etc.) may lead to unexpected command line argument interpretation, including argument injection and execution of other programs, if a specially crafted command line argument string is processed. All versions of Subversion up to and including Subversion 1.14.3 are affected on Windows platforms only. Users are recommended to upgrade to version Subversion 1.14.4, which fixes this issue. Subversion is not affected on UNIX-like platforms.

CVSS3: 8.2
0%
Низкий
больше 1 года назад
nvd логотип
CVE-2024-45720

On Windows platforms, a "best fit" character encoding conversion of command line arguments to Subversion's executables (e.g., svn.exe, etc.) may lead to unexpected command line argument interpretation, including argument injection and execution of other programs, if a specially crafted command line argument string is processed. All versions of Subversion up to and including Subversion 1.14.3 are affected on Windows platforms only. Users are recommended to upgrade to version Subversion 1.14.4, which fixes this issue. Subversion is not affected on UNIX-like platforms.

CVSS3: 8.2
0%
Низкий
больше 1 года назад
msrc логотип
CVE-2024-45720

Apache Subversion: Command line argument injection on Windows platforms

0%
Низкий
5 месяцев назад
debian логотип
CVE-2024-45720

On Windows platforms, a "best fit" character encoding conversion of co ...

CVSS3: 8.2
0%
Низкий
больше 1 года назад
github логотип
GHSA-86vm-fj76-qh69

On Windows platforms, a "best fit" character encoding conversion of command line arguments to Subversion's executables (e.g., svn.exe, etc.) may lead to unexpected command line argument interpretation, including argument injection and execution of other programs, if a specially crafted command line argument string is processed. All versions of Subversion up to and including Subversion 1.14.3 are affected on Windows platforms only. Users are recommended to upgrade to version Subversion 1.14.4, which fixes this issue. Subversion is not affected on UNIX-like platforms.

CVSS3: 8.2
0%
Низкий
больше 1 года назад

Уязвимостей на страницу