Loading
Generated remediation guidance and an executive summary. No account required.
Subversion 1.4.3 and earlier does not properly implement the "partial access" privilege for users who have access to changed paths but not copied paths, which allows remote authenticated users to obtain sensitive information (revision properties) via svn (1) propget, (2) proplist, or (3) propedit.
Use Subversion vendor hub and Subversion product page to widen CVE-2007-2448 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2004-0413, CVE-2009-2411 and CVE-2004-0397 for nearby disclosures in the same product family.