Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 8

Количество 8

ubuntu логотип

CVE-2026-53784

24 дня назад

rsync before 3.5.0 contains a path traversal vulnerability that allows remote clients to access files outside the intended module root when use chroot is disabled and the module root path or a component of it is a symlink. The daemon calls chdir() to the module root at session initialization without resolving symlinks via realpath() or equivalent, causing subsequent relative-path operations to reference files relative to the symlink target rather than the intended module root, enabling unauthorized file access.

CVSS3: 7.1
EPSS: Низкий
redhat логотип

CVE-2026-53784

24 дня назад

rsync before 3.5.0 contains a path traversal vulnerability that allows remote clients to access files outside the intended module root when use chroot is disabled and the module root path or a component of it is a symlink. The daemon calls chdir() to the module root at session initialization without resolving symlinks via realpath() or equivalent, causing subsequent relative-path operations to reference files relative to the symlink target rather than the intended module root, enabling unauthorized file access.

CVSS3: 7.1
EPSS: Низкий
nvd логотип

CVE-2026-53784

24 дня назад

rsync before 3.5.0 contains a path traversal vulnerability that allows remote clients to access files outside the intended module root when use chroot is disabled and the module root path or a component of it is a symlink. The daemon calls chdir() to the module root at session initialization without resolving symlinks via realpath() or equivalent, causing subsequent relative-path operations to reference files relative to the symlink target rather than the intended module root, enabling unauthorized file access.

CVSS3: 7.1
EPSS: Низкий
msrc логотип

CVE-2026-53784

14 дней назад

rsync < 3.5.0 Path Traversal via Symlink Module Root

EPSS: Низкий
debian логотип

CVE-2026-53784

24 дня назад

rsync before 3.5.0contains a path traversal vulnerability that allows ...

CVSS3: 7.1
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:3657-1

17 дней назад

Security update for rsync

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:3634-1

20 дней назад

Security update for rsync

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2026:21650-1

11 дней назад

Security update for rsync

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2026-53784

rsync before 3.5.0 contains a path traversal vulnerability that allows remote clients to access files outside the intended module root when use chroot is disabled and the module root path or a component of it is a symlink. The daemon calls chdir() to the module root at session initialization without resolving symlinks via realpath() or equivalent, causing subsequent relative-path operations to reference files relative to the symlink target rather than the intended module root, enabling unauthorized file access.

CVSS3: 7.1
0%
Низкий
24 дня назад
redhat логотип
CVE-2026-53784

rsync before 3.5.0 contains a path traversal vulnerability that allows remote clients to access files outside the intended module root when use chroot is disabled and the module root path or a component of it is a symlink. The daemon calls chdir() to the module root at session initialization without resolving symlinks via realpath() or equivalent, causing subsequent relative-path operations to reference files relative to the symlink target rather than the intended module root, enabling unauthorized file access.

CVSS3: 7.1
0%
Низкий
24 дня назад
nvd логотип
CVE-2026-53784

rsync before 3.5.0 contains a path traversal vulnerability that allows remote clients to access files outside the intended module root when use chroot is disabled and the module root path or a component of it is a symlink. The daemon calls chdir() to the module root at session initialization without resolving symlinks via realpath() or equivalent, causing subsequent relative-path operations to reference files relative to the symlink target rather than the intended module root, enabling unauthorized file access.

CVSS3: 7.1
0%
Низкий
24 дня назад
msrc логотип
CVE-2026-53784

rsync < 3.5.0 Path Traversal via Symlink Module Root

0%
Низкий
14 дней назад
debian логотип
CVE-2026-53784

rsync before 3.5.0contains a path traversal vulnerability that allows ...

CVSS3: 7.1
0%
Низкий
24 дня назад
suse-cvrf логотип
SUSE-SU-2026:3657-1

Security update for rsync

17 дней назад
suse-cvrf логотип
SUSE-SU-2026:3634-1

Security update for rsync

20 дней назад
suse-cvrf логотип
openSUSE-SU-2026:21650-1

Security update for rsync

11 дней назад

Уязвимостей на страницу