Lucene search

K
ubuntucveUbuntu.comUB:CVE-2004-1162
HistoryJan 10, 2005 - 12:00 a.m.

CVE-2004-1162

2005-01-1000:00:00
ubuntu.com
ubuntu.com
8

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

EPSS

0.006

Percentile

77.7%

The unison command in scponly before 4.0 does not properly restrict
programs that can be run, which could allow remote authenticated users to
bypass intended access restrictions and execute arbitrary programs via the
(1) -rshcmd or (2) -sshcmd flags.

OSVersionArchitecturePackageVersionFilename
ubuntu6.06noarchscponly< 4.6-1UNKNOWN
ubuntu6.10noarchscponly< 4.6-1UNKNOWN
ubuntu7.04noarchscponly< 4.6-1UNKNOWN

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

EPSS

0.006

Percentile

77.7%

Related for UB:CVE-2004-1162