Skip to content
Noroxi

asyncssh project records

5 published records for vendor asyncssh project.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
0
With a fix record
100%
Median publish → KEV
No record has entered KEV

All records

5 records
  • The SSH transport protocol with certain OpenSSH extensions, found in OpenSSH before 9.6 and other products, allows remote attackers to bypas

    MediumCVSS 5.9Proof of conceptEPSS 94%

    ssh · sshDec 18, 2023

  • The SSH server implementation of AsyncSSH before 1.12.1 does not properly check whether authentication is completed before processing other

    CriticalCVSS 9.8No exploitEPSS 2%

    asyncssh project · asyncsshMar 12, 2018

  • AsyncSSH `AuthorizedKeysFile %u` path traversal allows attacker-selected authorized keys to authenticate a traversal username

    HighCVSS 8.2No exploitEPSS 1%

    asyncssh project · asyncsshJul 17, 2026

  • An issue in AsyncSSH before 2.14.1 allows attackers to control the remote end of an SSH client session via packet injection/removal and shel

    MediumCVSS 6.8No exploitEPSS 1%

    asyncssh project · asyncsshNov 13, 2023

  • An issue in AsyncSSH before 2.14.1 allows attackers to control the extension info message (RFC 8308) via a man-in-the-middle attack, aka a "

    MediumCVSS 5.9No exploitEPSS 1%

    asyncssh project · asyncsshNov 13, 2023