Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2004-1161

Опубликовано: 10 янв. 2005
Источник: nvd
CVSS2: 7.5
EPSS Низкий

Описание

rssh 2.2.2 and earlier does not properly restrict programs that can be run, which could allow remote authenticated users to bypass intended access restrictions and execute arbitrary programs via (1) rdist -P, (2) rsync, or (3) scp -S.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:rssh:rssh:2.0:*:*:*:*:*:*:*
cpe:2.3:a:rssh:rssh:2.1:*:*:*:*:*:*:*
cpe:2.3:a:rssh:rssh:2.2:*:*:*:*:*:*:*
cpe:2.3:a:rssh:rssh:2.2.1:*:*:*:*:*:*:*
cpe:2.3:a:rssh:rssh:2.2.2:*:*:*:*:*:*:*
Конфигурация 2
cpe:2.3:o:gentoo:linux:*:*:*:*:*:*:*:*

EPSS

Процентиль: 94%
0.07327
Низкий

7.5 High

CVSS2

Дефекты

NVD-CWE-Other

Связанные уязвимости

ubuntu
больше 21 года назад

rssh 2.2.2 and earlier does not properly restrict programs that can be run, which could allow remote authenticated users to bypass intended access restrictions and execute arbitrary programs via (1) rdist -P, (2) rsync, or (3) scp -S.

debian
больше 21 года назад

rssh 2.2.2 and earlier does not properly restrict programs that can be ...

github
больше 4 лет назад

rssh 2.2.2 and earlier does not properly restrict programs that can be run, which could allow remote authenticated users to bypass intended access restrictions and execute arbitrary programs via (1) rdist -P, (2) rsync, or (3) scp -S.

fstec
больше 21 года назад

Уязвимости операционной системы Gentoo Linux, позволяющие удаленному злоумышленнику нарушить конфиденциальность, целостность и доступность защищаемой информации

EPSS

Процентиль: 94%
0.07327
Низкий

7.5 High

CVSS2

Дефекты

NVD-CWE-Other