Products: 2
Vulnerabilities: 8
Known Exploited: 0
2
Critical Level Threats
1
High Level Threats
5
Medium Level Threats
0
Low Level Threats
Vulnerabilities
100806040200
JanFebMarAprMayJunJulAugSepOctNovDec
Critical Level Threats
High Level Threats
Medium Level Threats
Low Level Threats
Products Security index
Actions
Items Per Page
Vulnerabilities
CVE-2024-37879
Improper input validation in /admin/config/save in User-friendly SVN (USVN) before v1.0.12 and below allows administrators to execute arbitrary code via the fields "siteTitle", "siteIco" and "siteLogo".
Last Modified: Apr 15, 2026
Published: Sep 20, 2024
CVE-2020-17363
USVN (aka User-friendly SVN) before 1.0.9 allows remote code execution via shell metacharacters in the number_start or number_end parameter to LastHundredRequest (aka lasthundredrequestAction) in the Timeline module. NOTE: this may overlap CVE-2020-25069.
Last Modified: Nov 21, 2024
Published: Dec 31, 2020
CVE-2020-25069
USVN (aka User-friendly SVN) before 1.0.10 allows attackers to execute arbitrary code in the commit view.
Last Modified: Nov 21, 2024
Published: Sep 01, 2020
CVE-2020-25070
USVN (aka User-friendly SVN) before 1.0.10 allows CSRF, related to the lack of the SameSite Strict feature.
Last Modified: Nov 21, 2024
Published: Sep 01, 2020
CVE-2020-17364
USVN (aka User-friendly SVN) before 1.0.9 allows XSS via SVN logs.
Last Modified: Nov 21, 2024
Published: Aug 05, 2020
Items Per Page
