Pizzashack / Rssh
7 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2019-3464 | Insufficient sanitization of environment variables passed to rsync can bypass the restrictions imposed by rssh, a restricted shell that should restrict users t… | CRITICAL | 9.8 | Feb 6, 2019 |
| CVE-2019-3463 | Insufficient sanitization of arguments passed to rsync can bypass the restrictions imposed by rssh, a restricted shell that should restrict users to perform on… | CRITICAL | 9.8 | Feb 6, 2019 |
| CVE-2019-1000018 | rssh version 2.3.4 contains a CWE-77: Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability in allowscp permission… | HIGH | 7.8 | Feb 4, 2019 |
| CVE-2012-2252 | Incomplete blacklist vulnerability in rssh before 2.3.4, when the rsync protocol is enabled, allows local users to bypass intended restricted shell access via… | MEDIUM | 4.4 | Jan 11, 2013 |
| CVE-2012-2251 | rssh 2.3.2, as used by Debian, Fedora, and others, when the rsync protocol is enabled, allows local users to bypass intended restricted shell access via a (1)… | MEDIUM | 4.4 | Jan 11, 2013 |
| CVE-2012-3478 | rssh 2.3.3 and earlier allows local users to bypass intended restricted shell access via crafted environment variables in the command line. | LOW | 2.1 | Aug 31, 2012 |
| CVE-2004-1628 | Format string vulnerability in log.c in rssh before 2.2.2 allows remote authenticated users to execute arbitrary code. | HIGH | 9.0 | Feb 20, 2005 |
Showing 1 to 7 of 7 CVEs