A lot of sites use SVN as their VCS of choice, pushing site changes directly from the repository. This is all good, but if you are not careful, you risk exposing your entire working repository.
more here..........http://blog.toft.io/exploiting-unsecure-web-servers-with-svn-directories/
more here..........http://blog.toft.io/exploiting-unsecure-web-servers-with-svn-directories/