Show filters
5 Total Results
Displaying 1-5 of 5
Sort by:
Attacker Value
Unknown

CVE-2007-6200

Disclosure Date: December 01, 2007 (last updated October 04, 2023)
Unspecified vulnerability in rsync before 3.0.0pre6, when running a writable rsync daemon, allows remote attackers to bypass exclude, exclude_from, and filter and read or write hidden files via (1) symlink, (2) partial-dir, (3) backup-dir, and unspecified (4) dest options.
0
Attacker Value
Unknown

CVE-2007-6199

Disclosure Date: December 01, 2007 (last updated October 04, 2023)
rsync before 3.0.0pre6, when running a writable rsync daemon that is not using chroot, allows remote attackers to access restricted files via unknown vectors that cause rsync to create a symlink that points outside of the module's hierarchy.
0
Attacker Value
Unknown

CVE-2004-0792

Disclosure Date: October 20, 2004 (last updated February 22, 2025)
Directory traversal vulnerability in the sanitize_path function in util.c for rsync 2.6.2 and earlier, when chroot is disabled, allows attackers to read or write certain files.
0
Attacker Value
Unknown

CVE-2003-0962

Disclosure Date: December 15, 2003 (last updated February 22, 2025)
Heap-based buffer overflow in rsync before 2.5.7, when running in server mode, allows remote attackers to execute arbitrary code and possibly escape the chroot jail.
0
Attacker Value
Unknown

CVE-2002-0048

Disclosure Date: February 27, 2002 (last updated February 22, 2025)
Multiple signedness errors (mixed signed and unsigned numbers) in the I/O functions of rsync 2.4.6, 2.3.2, and other versions allow remote attackers to cause a denial of service and execute arbitrary code in the rsync client or server.
0