Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-f9qc-p869-hxxw

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 9.1

Описание

Debian ftpsync before 20171017 does not use the rsync --safe-links option, which allows remote attackers to conduct directory traversal attacks via a crafted upstream mirror.

Debian ftpsync before 20171017 does not use the rsync --safe-links option, which allows remote attackers to conduct directory traversal attacks via a crafted upstream mirror.

EPSS

Процентиль: 53%
0.00301
Низкий

9.1 Critical

CVSS3

Дефекты

CWE-22

Связанные уязвимости

CVSS3: 9.1
ubuntu
больше 8 лет назад

Debian ftpsync before 20171017 does not use the rsync --safe-links option, which allows remote attackers to conduct directory traversal attacks via a crafted upstream mirror.

CVSS3: 9.1
nvd
больше 8 лет назад

Debian ftpsync before 20171017 does not use the rsync --safe-links option, which allows remote attackers to conduct directory traversal attacks via a crafted upstream mirror.

CVSS3: 9.1
debian
больше 8 лет назад

Debian ftpsync before 20171017 does not use the rsync --safe-links opt ...

EPSS

Процентиль: 53%
0.00301
Низкий

9.1 Critical

CVSS3

Дефекты

CWE-22