CVE-2013-4505: Low severity apache mod_dontdothat vulnerability
The isthislegal function in moddontdothat for Apache Subversion 1.4.0 through 1.7.13 and 1.8.0 through 1.8.4 allows remote attackers to bypass intended access restrictions and possibly cause a denial of service (resource consumption) via a relative URL in a REPORT request.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2013-4505?
CVE-2013-4505 is considered a moderate severity vulnerability that could allow remote attackers to bypass access restrictions.
How do I fix CVE-2013-4505?
To fix CVE-2013-4505, upgrade to a more recent version of Apache Subversion that has addressed this vulnerability.
What type of attack does CVE-2013-4505 enable?
CVE-2013-4505 could potentially enable a denial of service attack through resource consumption.
Which versions of Apache Subversion are affected by CVE-2013-4505?
CVE-2013-4505 affects Apache Subversion versions from 1.4.0 through 1.7.13 and 1.8.0 through 1.8.4.
What component is involved in CVE-2013-4505?
CVE-2013-4505 involves the is_this_legal function in the mod_dontdothat module of Apache Subversion.