VDB
CVE-2008-5919
CVE-2008-5919
PUBLISHED
CVSS 6.800000190734863 MEDIUM
Directory traversal vulnerability in rss.php in WebSVN 2.0 and earlier, when magic_quotes_gpc is disabled, allows remote attackers to overwrite arbitrary files via directory traversal sequences in the rev parameter.
EPSS 7.83% · 92.1th percentile
Risk Scores
CVSS 2.0
6.800000190734863
EPSS Score
7.83%
92.1th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| n/a | n/a | n/a |
| tigris | websvn | 0, 1.02, 1.03 |
Timeline
- Jan 21, 2009 CVE Published
- Feb 4, 2022 EPSS Score
- Mar 29, 2022 EPSS Score
- May 20, 2022 EPSS Score
- Sep 4, 2022 EPSS Score
- Oct 26, 2022 EPSS Score
- Dec 18, 2022 EPSS Score
- Feb 9, 2023 EPSS Score
- Mar 7, 2023 EPSS Score
- May 25, 2023 EPSS Score
- Jul 17, 2023 EPSS Score
- Sep 8, 2023 EPSS Score
References
- http://websvn.tigris.org/servlets/NewsItemView?newsItemID=2218 url
- 34191 third-party-advisory
- 6822 exploit
- websvn-rss-directory-traversal(46050) vdb
- http://websvn.tigris.org/issues/show_bug.cgi?id=179 url
- GLSA-200903-20 vendor-advisory
- 31891 vdb
- 4928 third-party-advisory
- 32338 third-party-advisory
- http://www.gulftech.org/?node=research&article_id=00132-10202008 url
- https://nvd.nist.gov/vuln/detail/CVE-2008-5919 advisory