Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
contrib/hook-scripts/svn-keyword-check.pl in Subversion before 1.6.23 allows remote authenticated users with commit permissions to execute arbitrary commands via shell metacharacters in a filename.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Apache Subversion 命令注入漏洞
Vulnerability Description
Apache Subversion是美国阿帕奇(Apache)软件基金会的一套开源的版本控制系统。该系统可兼容并发版本系统(CVS)。 Subversion 1.6.21及之前的版本中的contrib/hook-scripts/svn-keyword-check.pl文件中存在任意代码执行漏洞。远程经过授权的攻击可借助文件名中的shell元字符,利用该漏洞以提交权限执行任意代码。
CVSS Information
N/A
Vulnerability Type
N/A