Vulnerabilities > Collabnet

DATE CVE VULNERABILITY TITLE RISK
2013-07-31 CVE-2013-2112 Remote Denial of Service vulnerability in Apache Subversion
The svnserve server in Subversion before 1.6.23 and 1.7.x before 1.7.10 allows remote attackers to cause a denial of service (exit) by aborting a connection.
network
low complexity
apache collabnet canonical opensuse
7.8
2013-07-31 CVE-2013-2088 Improper Input Validation vulnerability in multiple products
contrib/hook-scripts/svn-keyword-check.pl in Subversion before 1.6.23 allows remote authenticated users with commit permissions to execute arbitrary commands via shell metacharacters in a filename.
network
high complexity
apache collabnet opensuse CWE-20
7.1
2013-07-31 CVE-2013-1968 Remote Denial of Service vulnerability in Apache Subversion
Subversion before 1.6.23 and 1.7.x before 1.7.10 allows remote authenticated users to cause a denial of service (FSFS repository corruption) via a newline character in a file name.
network
low complexity
apache collabnet canonical opensuse
5.5
2012-06-08 CVE-2012-2603 Permissions, Privileges, and Access Controls vulnerability in Collabnet Scrumworks
The server in CollabNet ScrumWorks Pro before 6.0 allows remote authenticated users to gain privileges and obtain sensitive information via a modified desktop client.
network
low complexity
collabnet CWE-264
6.5
2011-01-24 CVE-2011-0410 Cryptographic Issues vulnerability in Collabnet Scrumworks 1.8.4
CollabNet ScrumWorks Basic 1.8.4 uses cleartext credentials for network communication and the internal database, which makes it easier for context-dependent attackers to obtain sensitive information by (1) sniffing the network for transmissions of Java objects or (2) reading the database.
network
low complexity
collabnet CWE-310
5.0