ViewVC is a browser interface for CVS and Subversion version control repositories. In versions 1.1.0 through 1.1.31 and 1.2.0 through 1.2.3, the standalone.py script provided in the ViewVC distribution can expose the contents of the host server's filesystem though a directory traversal-style attack. This is fixed in versions 1.1.31 and 1.2.4.
References
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2025-07-22 22:15
Updated : 2025-08-05 17:17
NVD link : CVE-2025-54141
Mitre link : CVE-2025-54141
CVE.ORG link : CVE-2025-54141
JSON object : View
Products Affected
viewvc
- viewvc
