CVE-2011-5221
Websvn < 2.3.0 - XSS
Title source: ruleDescription
Cross-site scripting (XSS) vulnerability in the getLog function in svnlook.php in WebSVN before 2.3.1 allows remote attackers to inject arbitrary web script or HTML via the path parameter to (1) comp.php, (2) diff.php, or (3) revision.php.
References (9)
Scores
EPSS
0.0064
EPSS Percentile
70.4%
Details
CWE
CWE-79
Status
published
Products (7)
websvn/websvn
< 2.3.0
websvn/websvn
websvn/websvn
websvn/websvn
websvn/websvn
websvn/websvn
n/a/n/a
Published
Oct 25, 2012
Tracked Since
Feb 18, 2026