Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2004-1161
Description:rssh 2.2.2 and earlier does not properly restrict programs that can be run, which could allow remote authenticated users to bypass intended access restrictions and execute arbitrary programs via (1) rdist -P, (2) rsync, or (3) scp -S.
Test IDs: None available
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2004-1161
BugTraq ID: 11792
http://www.securityfocus.com/bid/11792
Bugtraq: 20041202 rssh and scponly arbitrary command execution (Google Search)
http://marc.info/?l=bugtraq&m=110202047507273&w=2
Bugtraq: 20050115 Re: rssh and scponly arbitrary command execution (Google Search)
http://marc.info/?l=bugtraq&m=110581113814623&w=2
http://www.gentoo.org/security/en/glsa/glsa-200412-01.xml




© 1998-2025 E-Soft Inc. All rights reserved.