Back
CVE-2005-4533
Argument injection vulnerability in scponlyc in scponly 4.1 and earlier, when both scp and rsync compatibility are enabled, allows local users to execute arbitrary applications via "getopt" style argument specifications, which are not filtered.
Published: Dec 28, 2005
Modified: Jun 16, 2026
CVSS Metrics
Affected Products (8)
| Vendor | Product | Version |
|---|---|---|
| scponly | scponly | 2.0 |
| scponly | scponly | 2.1 |
| scponly | scponly | 3.0 |
| scponly | scponly | 3.5 |
| scponly | scponly | 3.8 |
| scponly | scponly | 3.9 |
| scponly | scponly | 3.11 |
| scponly | scponly | 4.1 |
GitHub Security Advisory GHSA-ch42-xc83-q8gr
Argument injection vulnerability in scponlyc in scponly 4.1 and earlier, when both scp and rsync...
References (12)
- http://secunia.com/advisories/18223 Patch, Vendor Advisory
- http://secunia.com/advisories/18236
- http://sublimation.org/scponly/#relnotes
- http://www.gentoo.org/security/en/glsa/glsa-200512-17.xml
- http://www.securityfocus.com/bid/16051
- https://exchange.xforce.ibmcloud.com/vulnerabilities/23875
- http://secunia.com/advisories/18223 Patch, Vendor Advisory
- http://secunia.com/advisories/18236
- http://sublimation.org/scponly/#relnotes
- http://www.gentoo.org/security/en/glsa/glsa-200512-17.xml
- http://www.securityfocus.com/bid/16051
- https://exchange.xforce.ibmcloud.com/vulnerabilities/23875
Risk Scores
CVSS Score
7.5 / 10
EPSS Score
1.46%
Top 29% most likely to be exploited
Threat Score
30.4 / 100
Data Sources
NVD
EPSS
GitHub