İçeriğe atla
Noroxi

ssh kayıtları

ssh üreticisine ait 47 yayımlanmış kayıt.

Araştırmacı profili

KEV’e giren
0 · %0
Silahlaştırılmış
2 · %4,3
Pre-auth RCE
2
Düzeltme kaydı olan
%8,5
Yayından KEV’e ortanca
KEV’e giren kayıt yok

Tüm kayıtlar

47 kayıt
  • CVE-2023-48795
    51Planlayın

    The SSH transport protocol with certain OpenSSH extensions, found in OpenSSH before 9.6 and other products, allows remote attackers to bypas

    OrtaCVSS 5,9Kavram kanıtıEPSS %93

    ssh · ssh18 Ara 2023

  • CVE-2001-0144
    50Planlayın

    CORE SDI SSH1 CRC-32 compensation attack detector allows remote attackers to execute arbitrary commands on an SSH server or client via an in

    KritikCVSS 10,0Kavram kanıtıEPSS %32

    ssh · ssh12 Mar 2001

  • CVE-2012-5975
    48Planlayın

    The SSH USERAUTH CHANGE REQUEST feature in SSH Tectia Server 6.0.4 through 6.0.20, 6.1.0 through 6.1.12, 6.2.0 through 6.2.5, and 6.3.0 thro

    KritikCVSS 9,3SilahlaştırılmışEPSS %36

    ssh · tectia server4 Ara 2012

  • CVE-2002-1645
    42Planlayın

    Buffer overflow in the URL catcher feature for SSH Secure Shell for Workstations client 3.1 to 3.2.0 allows remote attackers to execute arbi

    KritikCVSS 10,0İstismar yokEPSS %8

    ssh · ssh225 Kas 2002

  • CVE-1999-0248
    40Planlayın

    A race condition in the authentication agent mechanism of sshd 1.2.17 allows an attacker to steal another user's credentials.

    KritikCVSS 10,0İstismar yokEPSS %2

    ssh · ssh1 Oca 1999

  • CVE-2024-30170
    36İzleyin

    PrivX before 34.0 allows data exfiltration and denial of service via the REST API.

    KritikCVSS 9,1İstismar yokEPSS %1

    ssh · privx6 Ağu 2024

  • CVE-2021-27891
    35İzleyin

    SSH Tectia Client and Server before 6.4.19 on Windows have weak key generation.

    YüksekCVSS 8,8İstismar yokEPSS %1

    ssh · tectia client15 Mar 2021

  • CVE-1999-0013
    33İzleyin

    Stolen credentials from SSH clients via ssh-agent program, allowing other local users to access remote accounts belonging to the ssh-agent u

    YüksekCVSS 8,4İstismar yokEPSS %1

    ssh · ssh22 Oca 1998

  • CVE-2001-0572
    32İzleyin

    The SSH protocols 1 and 2 (aka SSH-2) as implemented in OpenSSH and other packages have various weaknesses which can allow a remote attacker

    YüksekCVSS 7,5İstismar yokEPSS %7

    ssh · ssh22 Ağu 2001

  • CVE-2001-1473
    32İzleyin

    The SSH-1 protocol allows remote servers to conduct man-in-the-middle attacks and replay a client challenge response to a target server by c

    YüksekCVSS 7,5Kavram kanıtıEPSS %6

    ssh · ssh18 Oca 2001

  • CVE-2001-0471
    32İzleyin

    SSH daemon version 1 (aka SSHD-1 or SSH-1) 1.2.30 and earlier does not log repeated login attempts, which could allow remote attackers to co

    YüksekCVSS 7,5Kavram kanıtıEPSS %6

    ssh · ssh27 Haz 2001

  • CVE-2011-0766
    32İzleyin

    The random number generator in the Crypto application before 2.0.2.2, and SSH before 2.0.5, as used in the Erlang/OTP ssh library before R14

    YüksekCVSS 7,8İstismar yokEPSS %3

    erlang · crypto31 May 2011

  • CVE-2002-1646
    31İzleyin

    SSH Secure Shell for Servers 3.0.0 to 3.1.1 allows remote attackers to override the AllowedAuthentications configuration and use less secure

    YüksekCVSS 7,5İstismar yokEPSS %4

    ssh · secure shell for servers31 Ara 2002

  • CVE-2021-27892
    31İzleyin

    SSH Tectia Client and Server before 6.4.19 on Windows allow local privilege escalation.

    YüksekCVSS 7,8İstismar yokEPSS %0

    ssh · tectia client15 Mar 2021

  • CVE-1999-1029
    30İzleyin

    SSH server (sshd2) before 2.0.12 does not properly record login attempts if the connection is closed before the maximum number of tries, all

    YüksekCVSS 7,5İstismar yokEPSS %2

    ssh · ssh213 May 1999

  • CVE-2001-1475
    30İzleyin

    SSH before 2.0, when using RC4 and password authentication, allows remote attackers to replay messages until a new server key (VK) is genera

    YüksekCVSS 7,5İstismar yokEPSS %2

    ssh · ssh18 Oca 2001

  • CVE-1999-0310
    30İzleyin

    SSH 1.2.25 on HP-UX allows access to new user accounts.

    YüksekCVSS 7,5İstismar yokEPSS %2

    ssh · ssh1 Eyl 1998

  • CVE-2005-4310
    30İzleyin

    SSH Tectia Server 5.0.0 (A, F, and T), when allowing host-based authentication only, allows users to log in with the wrong credentials.

    YüksekCVSS 7,5İstismar yokEPSS %1

    ssh · tectia server16 Ara 2005

  • CVE-2001-1476
    30İzleyin

    SSH before 2.0, with RC4 encryption and the "disallow NULL passwords" option enabled, makes it easier for remote attackers to guess portions

    YüksekCVSS 7,5İstismar yokEPSS %1

    ssh · ssh18 Oca 2001

  • CVE-2001-0553
    28İzleyin

    SSH Secure Shell 3.0.0 on Unix systems does not properly perform password authentication to the sshd2 daemon, which allows local users to ga

    YüksekCVSS 7,2Kavram kanıtıEPSS %1

    ssh · secure shell14 Ağu 2001

  • CVE-2007-5616
    28İzleyin

    ssh-signer in SSH Tectia Client and Server 5.x before 5.2.4, and 5.3.x before 5.3.6, on Unix and Linux allows local users to gain privileges

    YüksekCVSS 7,2İstismar yokEPSS %1

    ssh · tectia client9 Oca 2008

  • CVE-2002-1715
    28İzleyin

    SSH 1 through 3, and possibly other versions, allows local users to bypass restricted shells such as rbash or rksh by uploading a script to

    YüksekCVSS 7,2Kavram kanıtıEPSS %1

    ssh · ssh31 Ara 2002

  • CVE-2000-0575
    28İzleyin

    SSH 1.2.27 with Kerberos authentication support stores Kerberos tickets in a file which is created in the current directory of the user who

    YüksekCVSS 7,2İstismar yokEPSS %1

    ssh · ssh5 Tem 2000

  • CVE-2002-1644
    28İzleyin

    SSH Secure Shell for Servers and SSH Secure Shell for Workstations 2.0.13 through 3.2.1, when running without a PTY, does not call setsid to

    YüksekCVSS 7,2İstismar yokEPSS %0

    ssh · ssh225 Kas 2002

  • CVE-2021-27893
    28İzleyin

    SSH Tectia Client and Server before 6.4.19 on Windows allow local privilege escalation in nonstandard conditions.

    YüksekCVSS 7,0İstismar yokEPSS %0

    ssh · tectia client15 Mar 2021