6.4
CVE-2004-0792
- EPSS 0.84%
- Veröffentlicht 20.10.2004 04:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
Directory traversal vulnerability in the sanitize_path function in util.c for rsync 2.6.2 and earlier, when chroot is disabled, allows attackers to read or write certain files.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Andrew Tridgell ≫ Rsync Version2.3.1
Andrew Tridgell ≫ Rsync Version2.3.2
Andrew Tridgell ≫ Rsync Version2.3.2_1.2 Editionalpha
Andrew Tridgell ≫ Rsync Version2.3.2_1.2 Editionarm
Andrew Tridgell ≫ Rsync Version2.3.2_1.2 Editionintel
Andrew Tridgell ≫ Rsync Version2.3.2_1.2 Editionm68k
Andrew Tridgell ≫ Rsync Version2.3.2_1.2 Editionppc
Andrew Tridgell ≫ Rsync Version2.3.2_1.2 Editionsparc
Andrew Tridgell ≫ Rsync Version2.3.2_1.3
Andrew Tridgell ≫ Rsync Version2.4.0
Andrew Tridgell ≫ Rsync Version2.4.1
Andrew Tridgell ≫ Rsync Version2.4.3
Andrew Tridgell ≫ Rsync Version2.4.4
Andrew Tridgell ≫ Rsync Version2.4.5
Andrew Tridgell ≫ Rsync Version2.4.6
Andrew Tridgell ≫ Rsync Version2.4.8
Andrew Tridgell ≫ Rsync Version2.5.0
Andrew Tridgell ≫ Rsync Version2.5.1
Andrew Tridgell ≫ Rsync Version2.5.2
Andrew Tridgell ≫ Rsync Version2.5.3
Andrew Tridgell ≫ Rsync Version2.5.4
Andrew Tridgell ≫ Rsync Version2.5.5
Andrew Tridgell ≫ Rsync Version2.5.6
Andrew Tridgell ≫ Rsync Version2.5.7
Andrew Tridgell ≫ Rsync Version2.6
Andrew Tridgell ≫ Rsync Version2.6.1
Andrew Tridgell ≫ Rsync Version2.6.2
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.84% | 0.725 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 6.4 | 10 | 4.9 |
AV:N/AC:L/Au:N/C:P/I:P/A:N
|