Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
rssh 2.3.2, as used by Debian, Fedora, and others, when the rsync protocol is enabled, allows local users to bypass intended restricted shell access via a (1) "-e" or (2) "--" command line option.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
rssh 任意命令行安全绕过漏洞
Vulnerability Description
rssh是一款使用在Linux中的Shell,它能够为特定用户提供通过scp和sftp登陆某系统的权限。 使用在Debian、Fedora以及其他产品中的rssh 2.3.2版本中存在漏洞。在启用了rsync协议的情况下,通过‘-e’或‘--’命令行选项,本地攻击者利用该漏洞绕过预期的限制的shell访问。
CVSS Information
N/A
Vulnerability Type
N/A