Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-m8x3-28h9-5qc5

Опубликовано: 15 янв. 2026
Источник: github
Github: Не прошло ревью
CVSS4: 6.8
CVSS3: 6.2

Описание

MTPutty 1.0.1.21 contains a sensitive information disclosure vulnerability that allows local attackers to view SSH connection passwords through Windows PowerShell process listing. Attackers can run a PowerShell command to retrieve the full command line of MTPutty processes, exposing plaintext SSH credentials.

MTPutty 1.0.1.21 contains a sensitive information disclosure vulnerability that allows local attackers to view SSH connection passwords through Windows PowerShell process listing. Attackers can run a PowerShell command to retrieve the full command line of MTPutty processes, exposing plaintext SSH credentials.

EPSS

Процентиль: 2%
0.00014
Низкий

6.8 Medium

CVSS4

6.2 Medium

CVSS3

Дефекты

CWE-522

Связанные уязвимости

CVSS3: 6.2
nvd
24 дня назад

MTPutty 1.0.1.21 contains a sensitive information disclosure vulnerability that allows local attackers to view SSH connection passwords through Windows PowerShell process listing. Attackers can run a PowerShell command to retrieve the full command line of MTPutty processes, exposing plaintext SSH credentials.

EPSS

Процентиль: 2%
0.00014
Низкий

6.8 Medium

CVSS4

6.2 Medium

CVSS3

Дефекты

CWE-522