CyberSec.Space Logo
Back to CVE Browser

CVE-2019-3463

CRITICAL
9.8
CVSS Severity Score
EPSS Score0.0000%
EPSS Percentile13.10th
PublishedFeb 6, 2019
Last ModifiedNov 21, 2024

Vulnerability Description

Insufficient sanitization of arguments passed to rsync can bypass the restrictions imposed by rssh, a restricted shell that should restrict users to perform only rsync operations, resulting in the execution of arbitrary shell commands.

Affected Platforms (CPE)

πŸ“¦
Pizzashack

Rssh

= 2.3.4
πŸ’»
Debian

Debian Linux

= 8.0
πŸ’»
Debian

Debian Linux

= 9.0
πŸ’»
Fedoraproject

Fedora

= 29
πŸ’»
Fedoraproject

Fedora

= 30
πŸ’»
Fedoraproject

Fedora

= 31
πŸ’»
Canonical

Ubuntu Linux

= 14.04
πŸ’»
Canonical

Ubuntu Linux

= 16.04
πŸ’»
Canonical

Ubuntu Linux

= 18.04
πŸ’»
Canonical

Ubuntu Linux

= 18.10

References & Advisories

Related Vulnerabilities