Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2007-6350
Description:scponly 4.6 and earlier allows remote authenticated users to bypass intended restrictions and execute code by invoking dangerous subcommands including (1) unison, (2) rsync, (3) svn, and (4) svnserve, as originally demonstrated by creating a Subversion (SVN) repository with malicious hooks, then using svn to trigger execution of those hooks.
Test IDs: 1.3.6.1.4.1.25623.1.0.60410   1.3.6.1.4.1.25623.1.0.60414  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2007-6350
BugTraq ID: 26900
http://www.securityfocus.com/bid/26900
Debian Security Information: DSA-1473 (Google Search)
http://www.debian.org/security/2008/dsa-1473
https://www.redhat.com/archives/fedora-package-announce/2008-February/msg00595.html
https://www.redhat.com/archives/fedora-package-announce/2008-February/msg00546.html
http://security.gentoo.org/glsa/glsa-200802-06.xml
http://osvdb.org/44137
http://www.securitytracker.com/id?1019103
http://secunia.com/advisories/28123
http://secunia.com/advisories/28538
http://secunia.com/advisories/28944
http://secunia.com/advisories/28981
http://www.vupen.com/english/advisories/2007/4243




© 1998-2025 E-Soft Inc. All rights reserved.