Nick Craig-Wood
13 exploits
Active since Nov 2024
rclone: Incomplete path validation allows backend root escape in serve restic
rclone: Unbounded HTTP CONNECT Response Headers Can Exhaust rclone Memory
CVSS 5.9
rclone: FTP Command Arguments Permit CRLF Injection When Custom Encoding Preserves Newlines
CVSS 6.4
rclone: PowerShell Smart-Quote Filename Injection Enables SFTP Server-Side Command Execution
CVSS 8.0
rclone: Local Encoding Path Traversal
CVSS 6.9
rclone: Unvalidated symlink target in local `--links` — arbitrary file write from an untrusted remote
CVSS 7.5
rclone archive extract allows S3 destination prefix escape via crafted archive paths
CVSS 5.0
rclone `serve restic --private-repos` authorization bypass: `..` in the URL path lets an authenticated user read, overwrite and delete other users' repositories
CVSS 8.8
rclone: Unvalidated symlink target in local `--links` — arbitrary file write from an untrusted remote
CVSS 7.5
rclone archive extract allows S3 destination prefix escape via crafted archive paths
CVSS 5.0
rclone `serve restic --private-repos` authorization bypass: `..` in the URL path lets an authenticated user read, overwrite and delete other users' repositories
CVSS 8.8
RClone: Unauthenticated operations/fsinfo allows attacker-controlled backend instantiation and local command execution
CVSS 9.8
rclone 1.59.0-1.68.1 - Privilege Escalation via Symlink Permission Manipulation