Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 13

Количество 13

fstec логотип

BDU:2026-14823

около 1 месяца назад

Уязвимость утилиты для передачи и синхронизации файлов Rsync, связанная с некорректным определением символических ссылок перед доступом к файлу, позволяющая нарушителю повысить свои привилегии

CVSS3: 7.8
EPSS: Низкий
ubuntu логотип

CVE-2026-53803

около 1 месяца назад

rsync before 3.5.0 contains a symlink following vulnerability that allows local attackers to overwrite arbitrary files by placing a symlink at a predictable output path such as --log-file, --write-batch, or daemon-mode log and statistics paths. Attackers can exploit rsync's failure to reject symlinks during ancillary file writes to redirect output to arbitrary filesystem locations, achieving local privilege escalation on installations where rsync runs with elevated privileges such as setuid or privileged daemon configurations.

CVSS3: 7.8
EPSS: Низкий
redhat логотип

CVE-2026-53803

около 1 месяца назад

rsync before 3.5.0 contains a symlink following vulnerability that allows local attackers to overwrite arbitrary files by placing a symlink at a predictable output path such as --log-file, --write-batch, or daemon-mode log and statistics paths. Attackers can exploit rsync's failure to reject symlinks during ancillary file writes to redirect output to arbitrary filesystem locations, achieving local privilege escalation on installations where rsync runs with elevated privileges such as setuid or privileged daemon configurations.

CVSS3: 7
EPSS: Низкий
nvd логотип

CVE-2026-53803

около 1 месяца назад

rsync before 3.5.0 contains a symlink following vulnerability that allows local attackers to overwrite arbitrary files by placing a symlink at a predictable output path such as --log-file, --write-batch, or daemon-mode log and statistics paths. Attackers can exploit rsync's failure to reject symlinks during ancillary file writes to redirect output to arbitrary filesystem locations, achieving local privilege escalation on installations where rsync runs with elevated privileges such as setuid or privileged daemon configurations.

CVSS3: 7.8
EPSS: Низкий
msrc логотип

CVE-2026-53803

28 дней назад

rsync < 3.5.0 Symlink Following Arbitrary File Overwrite

EPSS: Низкий
debian логотип

CVE-2026-53803

около 1 месяца назад

rsync before 3.5.0 contains a symlink following vulnerability that all ...

CVSS3: 7.8
EPSS: Низкий
rocky логотип

RLSA-2026:67462

5 дней назад

Important: rsync security, bug fix, and enhancement update

EPSS: Низкий
oracle-oval логотип

ELSA-2026-67462-0

5 дней назад

ELSA-2026-67462-0: rsync security, bug fix, and enhancement update (IMPORTANT)

EPSS: Низкий
rocky логотип

RLSA-2026:67463

5 дней назад

Important: rsync security, bug fix, and enhancement update

EPSS: Низкий
oracle-oval логотип

ELSA-2026-67463-0

5 дней назад

ELSA-2026-67463-0: rsync security, bug fix, and enhancement update (IMPORTANT)

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:3657-1

около 1 месяца назад

Security update for rsync

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:3634-1

около 1 месяца назад

Security update for rsync

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2026:21650-1

25 дней назад

Security update for rsync

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
fstec логотип
BDU:2026-14823

Уязвимость утилиты для передачи и синхронизации файлов Rsync, связанная с некорректным определением символических ссылок перед доступом к файлу, позволяющая нарушителю повысить свои привилегии

CVSS3: 7.8
0%
Низкий
около 1 месяца назад
ubuntu логотип
CVE-2026-53803

rsync before 3.5.0 contains a symlink following vulnerability that allows local attackers to overwrite arbitrary files by placing a symlink at a predictable output path such as --log-file, --write-batch, or daemon-mode log and statistics paths. Attackers can exploit rsync's failure to reject symlinks during ancillary file writes to redirect output to arbitrary filesystem locations, achieving local privilege escalation on installations where rsync runs with elevated privileges such as setuid or privileged daemon configurations.

CVSS3: 7.8
0%
Низкий
около 1 месяца назад
redhat логотип
CVE-2026-53803

rsync before 3.5.0 contains a symlink following vulnerability that allows local attackers to overwrite arbitrary files by placing a symlink at a predictable output path such as --log-file, --write-batch, or daemon-mode log and statistics paths. Attackers can exploit rsync's failure to reject symlinks during ancillary file writes to redirect output to arbitrary filesystem locations, achieving local privilege escalation on installations where rsync runs with elevated privileges such as setuid or privileged daemon configurations.

CVSS3: 7
0%
Низкий
около 1 месяца назад
nvd логотип
CVE-2026-53803

rsync before 3.5.0 contains a symlink following vulnerability that allows local attackers to overwrite arbitrary files by placing a symlink at a predictable output path such as --log-file, --write-batch, or daemon-mode log and statistics paths. Attackers can exploit rsync's failure to reject symlinks during ancillary file writes to redirect output to arbitrary filesystem locations, achieving local privilege escalation on installations where rsync runs with elevated privileges such as setuid or privileged daemon configurations.

CVSS3: 7.8
0%
Низкий
около 1 месяца назад
msrc логотип
CVE-2026-53803

rsync < 3.5.0 Symlink Following Arbitrary File Overwrite

0%
Низкий
28 дней назад
debian логотип
CVE-2026-53803

rsync before 3.5.0 contains a symlink following vulnerability that all ...

CVSS3: 7.8
0%
Низкий
около 1 месяца назад
rocky логотип
RLSA-2026:67462

Important: rsync security, bug fix, and enhancement update

5 дней назад
oracle-oval логотип
ELSA-2026-67462-0

ELSA-2026-67462-0: rsync security, bug fix, and enhancement update (IMPORTANT)

5 дней назад
rocky логотип
RLSA-2026:67463

Important: rsync security, bug fix, and enhancement update

5 дней назад
oracle-oval логотип
ELSA-2026-67463-0

ELSA-2026-67463-0: rsync security, bug fix, and enhancement update (IMPORTANT)

5 дней назад
suse-cvrf логотип
SUSE-SU-2026:3657-1

Security update for rsync

около 1 месяца назад
suse-cvrf логотип
SUSE-SU-2026:3634-1

Security update for rsync

около 1 месяца назад
suse-cvrf логотип
openSUSE-SU-2026:21650-1

Security update for rsync

25 дней назад

Уязвимостей на страницу