Vulnerabilities > Lsyncd Project

DATE CVE VULNERABILITY TITLE RISK
2014-12-05 CVE-2014-8990 Command Injection vulnerability in multiple products
default-rsyncssh.lua in Lsyncd 2.1.5 and earlier allows remote attackers to execute arbitrary commands via shell metacharacters in a filename.
network
low complexity
debian fedoraproject lsyncd-project CWE-77
7.5