Unrated severityNVD Advisory· Published Jan 10, 2005· Updated Apr 16, 2026
CVE-2004-1162
CVE-2004-1162
Description
The unison command in scponly before 4.0 does not properly restrict programs that can be run, which could allow remote authenticated users to bypass intended access restrictions and execute arbitrary programs via the (1) -rshcmd or (2) -sshcmd flags.
Affected products
10cpe:2.3:a:scponly:scponly:2.0:*:*:*:*:*:*:*+ 8 more
- cpe:2.3:a:scponly:scponly:2.0:*:*:*:*:*:*:*
- cpe:2.3:a:scponly:scponly:2.1:*:*:*:*:*:*:*
- cpe:2.3:a:scponly:scponly:2.3:*:*:*:*:*:*:*
- cpe:2.3:a:scponly:scponly:2.4:*:*:*:*:*:*:*
- cpe:2.3:a:scponly:scponly:3.0:*:*:*:*:*:*:*
- cpe:2.3:a:scponly:scponly:3.5:*:*:*:*:*:*:*
- cpe:2.3:a:scponly:scponly:3.8:*:*:*:*:*:*:*
- cpe:2.3:a:scponly:scponly:3.9:*:*:*:*:*:*:*
- cpe:2.3:a:scponly:scponly:3.11:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
6- www.securityfocus.com/bid/11791nvdExploitPatchVendor Advisory
- marc.infonvd
- marc.infonvd
- www.gentoo.org/security/en/glsa/glsa-200412-01.xmlnvd
- www.sublimation.org/scponly/nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/18362nvd
News mentions
0No linked articles in our index yet.