CVE Vulnerabilities

CVE-2005-4533

Published: Dec 28, 2005 | Modified: Oct 12, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

Argument injection vulnerability in scponlyc in scponly 4.1 and earlier, when both scp and rsync compatibility are enabled, allows local users to execute arbitrary applications via getopt style argument specifications, which are not filtered.

Affected Software

Name Vendor Start Version End Version
Scponly Scponly 2.0 2.0
Scponly Scponly 2.1 2.1
Scponly Scponly 3.0 3.0
Scponly Scponly 3.5 3.5
Scponly Scponly 3.8 3.8
Scponly Scponly 3.9 3.9
Scponly Scponly 3.11 3.11
Scponly Scponly 4.1 4.1
Scponly Ubuntu dapper *
Scponly Ubuntu devel *
Scponly Ubuntu edgy *
Scponly Ubuntu feisty *

References