Back

CVE-2005-4533

Argument injection vulnerability in scponlyc in scponly 4.1 and earlier, when both scp and rsync compatibility are enabled, allows local users to execute arbitrary applications via "getopt" style argument specifications, which are not filtered.

Published: Dec 28, 2005 Modified: Jun 16, 2026

CVSS Metrics

Affected Products (8)

Vendor Product Version
scponly scponly 2.0
scponly scponly 2.1
scponly scponly 3.0
scponly scponly 3.5
scponly scponly 3.8
scponly scponly 3.9
scponly scponly 3.11
scponly scponly 4.1

GitHub Security Advisory GHSA-ch42-xc83-q8gr

Argument injection vulnerability in scponlyc in scponly 4.1 and earlier, when both scp and rsync...

Risk Scores

CVSS Score 7.5 / 10
EPSS Score 1.46%

Top 29% most likely to be exploited

Threat Score 30.4 / 100

Data Sources

NVD EPSS GitHub