The SVN revision view (lib/vclib/svn/svn_repos.py) in ViewVC before 1.1.15 does not properly handle log messages when a readable path is copied from an unreadable path, which allows remote attackers to obtain sensitive information, related to a "log msg leak."
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2012-07-22 09:55
Updated : 2017-08-28 18:31
NVD link : CVE-2012-3357
Mitre link : CVE-2012-3357
JSON object : View
CWE
CWE-200
Exposure of Sensitive Information to an Unauthorized Actor
Products Affected
viewvc
- viewvc