CVE-2013-7393: Apache Subversion

Low severity, CVSS 2.4. EPSS: 0.6% chance of exploitation in the next 30 days.

The daemonize.py module in Subversion 1.8.0 before 1.8.2 allows local users to gain privileges via a symlink attack on the pid file created for (1) svnwcsub.py or (2) irkerbridge.py when the --pidfile option is used. NOTE: this issue was SPLIT from CVE-2013-4262 based on different affected versions (ADT3).

Affected products

  • Apache Subversion: version 1.8.0 only; version 1.8.1 only

Published 2014-07-28. Last modified 2026-06-17.