Paramiko kayıtları
paramiko üreticisine ait 4 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 0
- Düzeltme kaydı olan
- %100
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-287 Improper Authentication1
- CWE-354 Improper Validation of Integrity Check Value1
- CWE-362 Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')1
- CWE-863 Incorrect Authorization1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
4 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
51Planlayın | CVE-2023-48795Kavram kanıtı | The SSH transport protocol with certain OpenSSH extensions, found in OpenSSH before 9.6 and other products, allows remote attackers to bypasssh · ssh · CWE-354 | Orta5,9 | — | %93,3 | 18 Ara 2023 |
47Planlayın | CVE-2018-7750Kavram kanıtı | transport.py in the SSH server implementation of Paramiko before 1.17.6, 1.18.x before 1.18.5, 2.0.x before 2.0.8, 2.1.x before 2.1.5, 2.2.xparamiko · paramiko · CWE-287 | Kritik9,8 | — | %27,1 | 13 Mar 2018 |
36İzleyin | CVE-2018-1000805İstismar yok | Paramiko version 2.4.1, 2.3.2, 2.2.3, 2.1.5, 2.0.8, 1.18.5, 1.17.6 contains a Incorrect Access Control vulnerability in SSH server that can paramiko · paramiko · CWE-863 | Yüksek8,8 | — | %4,4 | 8 Eki 2018 |
24İzleyin | CVE-2022-24302İstismar yok | In Paramiko before 2.10.1, a race condition (between creation and chmod) in the write_private_key_file function could allow unauthorized infparamiko · paramiko · CWE-362 | Orta5,9 | — | %2,1 | 17 Mar 2022 |
- CVE-2023-4879551Planlayın
The SSH transport protocol with certain OpenSSH extensions, found in OpenSSH before 9.6 and other products, allows remote attackers to bypas
OrtaCVSS 5,9Kavram kanıtıEPSS %93ssh · ssh18 Ara 2023
- CVE-2018-775047Planlayın
transport.py in the SSH server implementation of Paramiko before 1.17.6, 1.18.x before 1.18.5, 2.0.x before 2.0.8, 2.1.x before 2.1.5, 2.2.x
KritikCVSS 9,8Kavram kanıtıEPSS %27paramiko · paramiko13 Mar 2018
- CVE-2018-100080536İzleyin
Paramiko version 2.4.1, 2.3.2, 2.2.3, 2.1.5, 2.0.8, 1.18.5, 1.17.6 contains a Incorrect Access Control vulnerability in SSH server that can
YüksekCVSS 8,8İstismar yokEPSS %4paramiko · paramiko8 Eki 2018
- CVE-2022-2430224İzleyin
In Paramiko before 2.10.1, a race condition (between creation and chmod) in the write_private_key_file function could allow unauthorized inf
OrtaCVSS 5,9İstismar yokEPSS %2paramiko · paramiko17 Mar 2022