Записи scponly
5 опубликованных записей вендора scponly.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 2
- С записью об исправлении
- 60 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Записи по годам
Столбик: всего · тёмная часть: CISA KEV.
Повторяющиеся классы
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
5 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
35Наблюдать | CVE-2007-6350Эксплойта нет | scponly 4.6 and earlier allows remote authenticated users to bypass intended restrictions and execute code by invoking dangerous subcommandsscponly · scponly · CWE-264 | Высокая8,5 | — | 4,4 % | 14 дек. 2007 г. |
31Наблюдать | CVE-2002-1469Proof of concept | scponly does not properly verify the path when finding the (1) scp or (2) sftp-server programs, which could allow remote authenticated usersscponly · scponly | Высокая7,5 | — | 2,9 % | 22 апр. 2003 г. |
31Наблюдать | CVE-2004-1162Эксплойта нет | The unison command in scponly before 4.0 does not properly restrict programs that can be run, which could allow remote authenticated users tscponly · scponly | Высокая7,5 | — | 1,9 % | 10 янв. 2005 г. |
30Наблюдать | CVE-2005-4533Эксплойта нет | Argument injection vulnerability in scponlyc in scponly 4.1 and earlier, when both scp and rsync compatibility are enabled, allows local usescponly · scponly | Высокая7,5 | — | 1,5 % | 27 дек. 2005 г. |
28Наблюдать | CVE-2005-4532Эксплойта нет | scponlyc in scponly 4.1 and earlier, when the operating system supports LD_PRELOAD mechanisms, allows local users to execute arbitrary code scponly · scponly | Высокая7,2 | — | 0,4 % | 27 дек. 2005 г. |
- CVE-2007-635035Наблюдать
scponly 4.6 and earlier allows remote authenticated users to bypass intended restrictions and execute code by invoking dangerous subcommands
ВысокаяCVSS 8,5Эксплойта нетEPSS 4 %scponly · scponly14 дек. 2007 г.
- CVE-2002-146931Наблюдать
scponly does not properly verify the path when finding the (1) scp or (2) sftp-server programs, which could allow remote authenticated users
ВысокаяCVSS 7,5Proof of conceptEPSS 3 %scponly · scponly22 апр. 2003 г.
- CVE-2004-116231Наблюдать
The unison command in scponly before 4.0 does not properly restrict programs that can be run, which could allow remote authenticated users t
ВысокаяCVSS 7,5Эксплойта нетEPSS 2 %scponly · scponly10 янв. 2005 г.
- CVE-2005-453330Наблюдать
Argument injection vulnerability in scponlyc in scponly 4.1 and earlier, when both scp and rsync compatibility are enabled, allows local use
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %scponly · scponly27 дек. 2005 г.
- CVE-2005-453228Наблюдать
scponlyc in scponly 4.1 and earlier, when the operating system supports LD_PRELOAD mechanisms, allows local users to execute arbitrary code
ВысокаяCVSS 7,2Эксплойта нетEPSS 0 %scponly · scponly27 дек. 2005 г.