Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-22gf-f5w4-hrfq

Опубликовано: 13 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 9.1

Описание

A vulnerability was found in libssh's server-side state machine before versions 0.7.6 and 0.8.4. A malicious client could create channels without first performing authentication, resulting in unauthorized access.

A vulnerability was found in libssh's server-side state machine before versions 0.7.6 and 0.8.4. A malicious client could create channels without first performing authentication, resulting in unauthorized access.

EPSS

Процентиль: 99%
0.79855
Высокий

9.1 Critical

CVSS3

Дефекты

CWE-287

Связанные уязвимости

CVSS3: 9.1
ubuntu
почти 7 лет назад

A vulnerability was found in libssh's server-side state machine before versions 0.7.6 and 0.8.4. A malicious client could create channels without first performing authentication, resulting in unauthorized access.

CVSS3: 9.1
redhat
почти 7 лет назад

A vulnerability was found in libssh's server-side state machine before versions 0.7.6 and 0.8.4. A malicious client could create channels without first performing authentication, resulting in unauthorized access.

CVSS3: 9.1
nvd
почти 7 лет назад

A vulnerability was found in libssh's server-side state machine before versions 0.7.6 and 0.8.4. A malicious client could create channels without first performing authentication, resulting in unauthorized access.

CVSS3: 9.1
debian
почти 7 лет назад

A vulnerability was found in libssh's server-side state machine before ...

suse-cvrf
почти 7 лет назад

Security update for libssh

EPSS

Процентиль: 99%
0.79855
Высокий

9.1 Critical

CVSS3

Дефекты

CWE-287