VYPR
Unrated severityNVD Advisory· Published Dec 1, 2007· Updated Jun 16, 2026

CVE-2007-6199

CVE-2007-6199

Description

rsync before 3.0.0pre6, when running a writable rsync daemon that is not using chroot, allows remote attackers to access restricted files via unknown vectors that cause rsync to create a symlink that points outside of the module's hierarchy.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

34
  • Rsync/Rsync33 versions
    cpe:2.3:a:rsync:rsync:2.3.1:*:*:*:*:*:*:*+ 32 more
    • cpe:2.3:a:rsync:rsync:2.3.1:*:*:*:*:*:*:*
    • cpe:2.3:a:rsync:rsync:2.3.2:*:*:*:*:*:*:*
    • cpe:2.3:a:rsync:rsync:2.3.2_1.2alpha:*:*:*:*:*:*:*
    • cpe:2.3:a:rsync:rsync:2.3.2_1.2arm:*:*:*:*:*:*:*
    • cpe:2.3:a:rsync:rsync:2.3.2_1.2intel:*:*:*:*:*:*:*
    • cpe:2.3:a:rsync:rsync:2.3.2_1.2m68k:*:*:*:*:*:*:*
    • cpe:2.3:a:rsync:rsync:2.3.2_1.2ppc:*:*:*:*:*:*:*
    • cpe:2.3:a:rsync:rsync:2.3.2_1.2sparc:*:*:*:*:*:*:*
    • cpe:2.3:a:rsync:rsync:2.3.2_1.3:*:*:*:*:*:*:*
    • cpe:2.3:a:rsync:rsync:2.4.0:*:*:*:*:*:*:*
    • cpe:2.3:a:rsync:rsync:2.4.1:*:*:*:*:*:*:*
    • cpe:2.3:a:rsync:rsync:2.4.3:*:*:*:*:*:*:*
    • cpe:2.3:a:rsync:rsync:2.4.4:*:*:*:*:*:*:*
    • cpe:2.3:a:rsync:rsync:2.4.5:*:*:*:*:*:*:*
    • cpe:2.3:a:rsync:rsync:2.4.6:*:*:*:*:*:*:*
    • cpe:2.3:a:rsync:rsync:2.4.8:*:*:*:*:*:*:*
    • cpe:2.3:a:rsync:rsync:2.5.0:*:*:*:*:*:*:*
    • cpe:2.3:a:rsync:rsync:2.5.1:*:*:*:*:*:*:*
    • cpe:2.3:a:rsync:rsync:2.5.2:*:*:*:*:*:*:*
    • cpe:2.3:a:rsync:rsync:2.5.3:*:*:*:*:*:*:*
    • cpe:2.3:a:rsync:rsync:2.5.4:*:*:*:*:*:*:*
    • cpe:2.3:a:rsync:rsync:2.5.5:*:*:*:*:*:*:*
    • cpe:2.3:a:rsync:rsync:2.5.6:*:*:*:*:*:*:*
    • cpe:2.3:a:rsync:rsync:2.5.7:*:*:*:*:*:*:*
    • cpe:2.3:a:rsync:rsync:2.6:*:*:*:*:*:*:*
    • cpe:2.3:a:rsync:rsync:2.6.1:*:*:*:*:*:*:*
    • cpe:2.3:a:rsync:rsync:2.6.2:*:*:*:*:*:*:*
    • cpe:2.3:a:rsync:rsync:2.6.5:*:*:*:*:*:*:*
    • cpe:2.3:a:rsync:rsync:2.6.6:*:*:*:*:*:*:*
    • cpe:2.3:a:rsync:rsync:2.6.7:*:*:*:*:*:*:*
    • cpe:2.3:a:rsync:rsync:2.6.8:*:*:*:*:*:*:*
    • cpe:2.3:a:rsync:rsync:2.6.9:*:*:*:*:*:*:*
    • (no CPE)range: <3.0.0pre6

Patches

Vulnerability mechanics

References

17

News mentions

0

No linked articles in our index yet.