CVE-2013-7393: Apache Subversion
Low severity, CVSS 2.4. EPSS: 0.6% chance of exploitation in the next 30 days.
The daemonize.py module in Subversion 1.8.0 before 1.8.2 allows local users to gain privileges via a symlink attack on the pid file created for (1) svnwcsub.py or (2) irkerbridge.py when the --pidfile option is used. NOTE: this issue was SPLIT from CVE-2013-4262 based on different affected versions (ADT3).
Affected products
- Apache Subversion: version 1.8.0 only; version 1.8.1 only
Published 2014-07-28. Last modified 2026-06-17.