Show filters
5 Total Results
Displaying 1-5 of 5
Sort by:
Attacker Value
Unknown

CVE-2024-4461

Disclosure Date: May 03, 2024 (last updated May 03, 2024)
Unquoted path or search item vulnerability in SugarSync versions prior to 4.1.3 for Windows. This misconfiguration could allow an unauthorized local user to inject arbitrary code into the unquoted service path, resulting in privilege escalation.
0
Attacker Value
Unknown

CVE-2014-8242

Disclosure Date: October 26, 2015 (last updated October 05, 2023)
librsync before 1.0.0 uses a truncated MD4 checksum to match blocks, which makes it easier for remote attackers to modify transmitted data via a birthday attack.
0
Attacker Value
Unknown

CVE-2007-6200

Disclosure Date: December 01, 2007 (last updated October 04, 2023)
Unspecified vulnerability in rsync before 3.0.0pre6, when running a writable rsync daemon, allows remote attackers to bypass exclude, exclude_from, and filter and read or write hidden files via (1) symlink, (2) partial-dir, (3) backup-dir, and unspecified (4) dest options.
0
Attacker Value
Unknown

CVE-2007-6199

Disclosure Date: December 01, 2007 (last updated October 04, 2023)
rsync before 3.0.0pre6, when running a writable rsync daemon that is not using chroot, allows remote attackers to access restricted files via unknown vectors that cause rsync to create a symlink that points outside of the module's hierarchy.
0
Attacker Value
Unknown

CVE-2007-4091

Disclosure Date: August 16, 2007 (last updated October 04, 2023)
Multiple off-by-one errors in the sender.c in rsync 2.6.9 might allow remote attackers to execute arbitrary code via directory names that are not properly handled when calling the f_name function.
0