CyberSec.Space Logo
返回 CVE 瀏覽器

CVE-2019-3463

CRITICAL
9.8
CVSS Severity Score
EPSS Score0.0000%
EPSS Percentile13.10th
Published2019年2月6日
Last Modified2024年11月21日

Vulnerability Description

Insufficient sanitization of arguments passed to rsync can bypass the restrictions imposed by rssh, a restricted shell that should restrict users to perform only rsync operations, resulting in the execution of arbitrary shell commands.

Affected Platforms (CPE)

📦
Pizzashack

Rssh

= 2.3.4
💻
Debian

Debian Linux

= 8.0
💻
Debian

Debian Linux

= 9.0
💻
Fedoraproject

Fedora

= 29
💻
Fedoraproject

Fedora

= 30
💻
Fedoraproject

Fedora

= 31
💻
Canonical

Ubuntu Linux

= 14.04
💻
Canonical

Ubuntu Linux

= 16.04
💻
Canonical

Ubuntu Linux

= 18.04
💻
Canonical

Ubuntu Linux

= 18.10

References & Advisories

相關漏洞威脅