Show filters
5 Total Results
Displaying 1-5 of 5
Sort by:
Attacker Value
Unknown
CVE-2024-4461
Disclosure Date: May 03, 2024 (last updated May 03, 2024)
Unquoted path or search item vulnerability in SugarSync versions prior to 4.1.3 for Windows. This misconfiguration could allow an unauthorized local user to inject arbitrary code into the unquoted service path, resulting in privilege escalation.
0
Attacker Value
Unknown
CVE-2014-8242
Disclosure Date: October 26, 2015 (last updated October 05, 2023)
librsync before 1.0.0 uses a truncated MD4 checksum to match blocks, which makes it easier for remote attackers to modify transmitted data via a birthday attack.
0
Attacker Value
Unknown
CVE-2007-6200
Disclosure Date: December 01, 2007 (last updated October 04, 2023)
Unspecified vulnerability in rsync before 3.0.0pre6, when running a writable rsync daemon, allows remote attackers to bypass exclude, exclude_from, and filter and read or write hidden files via (1) symlink, (2) partial-dir, (3) backup-dir, and unspecified (4) dest options.
0
Attacker Value
Unknown
CVE-2007-6199
Disclosure Date: December 01, 2007 (last updated October 04, 2023)
rsync before 3.0.0pre6, when running a writable rsync daemon that is not using chroot, allows remote attackers to access restricted files via unknown vectors that cause rsync to create a symlink that points outside of the module's hierarchy.
0
Attacker Value
Unknown
CVE-2007-4091
Disclosure Date: August 16, 2007 (last updated October 04, 2023)
Multiple off-by-one errors in the sender.c in rsync 2.6.9 might allow remote attackers to execute arbitrary code via directory names that are not properly handled when calling the f_name function.
0