Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Incomplete blacklist vulnerability in rssh before 2.3.4, when the rsync protocol is enabled, allows local users to bypass intended restricted shell access via the --rsh command line option.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
rssh 命令过滤器安全绕过漏洞
Vulnerability Description
rssh是一款使用在Linux中的Shell,它能够为特定用户提供通过scp和sftp登陆某系统的权限。 rssh早期版本至2.3.4版本中存在漏洞,可被本地攻击者利用绕过一定的安全限制。该漏洞源于验证‘--rsh’命令行操作时存在错误。攻击者利用该漏洞允许绕过过滤器检查,导致减少shell的限制。
CVSS Information
N/A
Vulnerability Type
N/A