Vulnerabilities > Apache > Subversion > 1.5.5

DATE CVE VULNERABILITY TITLE RISK
2011-06-06 CVE-2011-1752 Denial of Service and Information Disclosure vulnerability in Subversion 'mod_dav_svn'
The mod_dav_svn module for the Apache HTTP Server, as distributed in Apache Subversion before 1.6.17, allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via a request for a baselined WebDAV resource, as exploited in the wild in May 2011.
network
low complexity
apache
5.0
2011-03-11 CVE-2011-0715 Denial Of Service vulnerability in Subversion 'mod_dav_svn' Apache Server NULL Pointer Dereference
The mod_dav_svn module for the Apache HTTP Server, as distributed in Apache Subversion before 1.6.16, allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via a request that contains a lock token.
network
apache
4.3
2010-10-04 CVE-2010-3315 Configuration vulnerability in Apache Subversion
authz.c in the mod_dav_svn module for the Apache HTTP Server, as distributed in Apache Subversion 1.5.x before 1.5.8 and 1.6.x before 1.6.13, when SVNPathAuthz short_circuit is enabled, does not properly handle a named repository as a rule scope, which allows remote authenticated users to bypass intended access restrictions via svn commands.
network
apache CWE-16
6.0