ID |
CVE-2013-7393
|
Sažetak |
The daemonize.py module in Subversion 1.8.0 before 1.8.2 allows local users to gain privileges via a symlink attack on the pid file created for (1) svnwcsub.py or (2) irkerbridge.py when the --pidfile option is used. NOTE: this issue was SPLIT from CVE-2013-4262 based on different affected versions (ADT3). |
Reference |
|
CVSS |
Base: | 2.4 |
Impact: | 4.9 |
Exploitability: | 1.5 |
|
Pristup |
Vektor | Složenost | Autentikacija |
LOCAL |
HIGH |
SINGLE |
|
Impact |
Povjerljivost | Cjelovitost | Dostupnost |
NONE |
PARTIAL |
PARTIAL |
|
CVSS vektor |
AV:L/AC:H/Au:S/C:N/I:P/A:P |
Zadnje važnije ažuriranje |
18-10-2016 - 03:43 |
Objavljeno |
28-07-2014 - 19:55 |