Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2018-1000805

Опубликовано: 08 окт. 2018
Источник: debian
EPSS Низкий

Описание

Paramiko version 2.4.1, 2.3.2, 2.2.3, 2.1.5, 2.0.8, 1.18.5, 1.17.6 contains a Incorrect Access Control vulnerability in SSH server that can result in RCE. This attack appear to be exploitable via network connectivity.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
paramikofixed2.4.2-0.1package

Примечания

  • https://github.com/paramiko/paramiko/issues/1283

  • https://github.com/paramiko/paramiko/commit/56c96a659658acdbb873aef8809a7b508434dcce

EPSS

Процентиль: 60%
0.00407
Низкий

Связанные уязвимости

CVSS3: 8.8
ubuntu
около 7 лет назад

Paramiko version 2.4.1, 2.3.2, 2.2.3, 2.1.5, 2.0.8, 1.18.5, 1.17.6 contains a Incorrect Access Control vulnerability in SSH server that can result in RCE. This attack appear to be exploitable via network connectivity.

CVSS3: 9.8
redhat
около 7 лет назад

Paramiko version 2.4.1, 2.3.2, 2.2.3, 2.1.5, 2.0.8, 1.18.5, 1.17.6 contains a Incorrect Access Control vulnerability in SSH server that can result in RCE. This attack appear to be exploitable via network connectivity.

CVSS3: 8.8
nvd
около 7 лет назад

Paramiko version 2.4.1, 2.3.2, 2.2.3, 2.1.5, 2.0.8, 1.18.5, 1.17.6 contains a Incorrect Access Control vulnerability in SSH server that can result in RCE. This attack appear to be exploitable via network connectivity.

suse-cvrf
больше 6 лет назад

Security update for python-paramiko

suse-cvrf
около 3 лет назад

Security update for python-paramiko

EPSS

Процентиль: 60%
0.00407
Низкий