pizzashack kayıtları
pizzashack üreticisine ait 7 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 0
- Düzeltme kaydı olan
- %85,7
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-134 Use of Externally-Controlled Format String1
- CWE-20 Improper Input Validation1
- CWE-264 Permissions, Privileges, and Access Controls1
- CWE-665 Improper Initialization1
- CWE-77 Improper Neutralization of Special Elements used in a Command ('Command Injection')1
- CWE-88 Improper Neutralization of Argument Delimiters in a Command ('Argument Injection')1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWESaldırı profili
Tüm kayıtlar
7 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
40Planlayın | CVE-2019-3463İstismar yok | Insufficient sanitization of arguments passed to rsync can bypass the restrictions imposed by rssh, a restricted shell that should restrict pizzashack · rssh · CWE-88 | Kritik9,8 | — | %4,9 | 6 Şub 2019 |
40Planlayın | CVE-2019-3464İstismar yok | Insufficient sanitization of environment variables passed to rsync can bypass the restrictions imposed by rssh, a restricted shell that shoupizzashack · rssh · CWE-665 | Kritik9,8 | — | %4,7 | 6 Şub 2019 |
37İzleyin | CVE-2004-1628İstismar yok | Format string vulnerability in log.c in rssh before 2.2.2 allows remote authenticated users to execute arbitrary code.pizzashack · rssh · CWE-134 | Kritik9,0 | — | %4,7 | 23 Eki 2004 |
32İzleyin | CVE-2019-1000018İstismar yok | rssh version 2.3.4 contains a CWE-77: Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability in apizzashack · rssh · CWE-77 | Yüksek7,8 | — | %1,9 | 4 Şub 2019 |
17İzleyin | CVE-2012-2252İstismar yok | Incomplete blacklist vulnerability in rssh before 2.3.4, when the rsync protocol is enabled, allows local users to bypass intended restrictepizzashack · rssh | Orta4,4 | — | %0,4 | 10 Oca 2013 |
17İzleyin | CVE-2012-2251İstismar yok | rssh 2.3.2, as used by Debian, Fedora, and others, when the rsync protocol is enabled, allows local users to bypass intended restricted sheldebian · debian linux · CWE-20 | Orta4,4 | — | %0,3 | 10 Oca 2013 |
8İzleyin | CVE-2012-3478İstismar yok | rssh 2.3.3 and earlier allows local users to bypass intended restricted shell access via crafted environment variables in the command line.pizzashack · rssh · CWE-264 | Düşük2,1 | — | %0,4 | 31 Ağu 2012 |
- CVE-2019-346340Planlayın
Insufficient sanitization of arguments passed to rsync can bypass the restrictions imposed by rssh, a restricted shell that should restrict
KritikCVSS 9,8İstismar yokEPSS %5pizzashack · rssh6 Şub 2019
- CVE-2019-346440Planlayın
Insufficient sanitization of environment variables passed to rsync can bypass the restrictions imposed by rssh, a restricted shell that shou
KritikCVSS 9,8İstismar yokEPSS %5pizzashack · rssh6 Şub 2019
- CVE-2004-162837İzleyin
Format string vulnerability in log.c in rssh before 2.2.2 allows remote authenticated users to execute arbitrary code.
KritikCVSS 9,0İstismar yokEPSS %5pizzashack · rssh23 Eki 2004
- CVE-2019-100001832İzleyin
rssh version 2.3.4 contains a CWE-77: Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability in a
YüksekCVSS 7,8İstismar yokEPSS %2pizzashack · rssh4 Şub 2019
- CVE-2012-225217İzleyin
Incomplete blacklist vulnerability in rssh before 2.3.4, when the rsync protocol is enabled, allows local users to bypass intended restricte
OrtaCVSS 4,4İstismar yokEPSS %0pizzashack · rssh10 Oca 2013
- CVE-2012-225117İzleyin
rssh 2.3.2, as used by Debian, Fedora, and others, when the rsync protocol is enabled, allows local users to bypass intended restricted shel
OrtaCVSS 4,4İstismar yokEPSS %0debian · debian linux10 Oca 2013
- CVE-2012-34788İzleyin
rssh 2.3.3 and earlier allows local users to bypass intended restricted shell access via crafted environment variables in the command line.
DüşükCVSS 2,1İstismar yokEPSS %0pizzashack · rssh31 Ağu 2012