Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-v93f-5rx7-jm73

Опубликовано: 02 апр. 2026
Источник: github
Github: Не прошло ревью
CVSS3: 3.6

Описание

In OpenSSH before 10.3, command execution can occur via shell metacharacters in a username within a command line. This requires a scenario where the username on the command line is untrusted, and also requires a non-default configurations of % in ssh_config.

In OpenSSH before 10.3, command execution can occur via shell metacharacters in a username within a command line. This requires a scenario where the username on the command line is untrusted, and also requires a non-default configurations of % in ssh_config.

EPSS

Процентиль: 24%
0.00319
Низкий

3.6 Low

CVSS3

Дефекты

CWE-696

Связанные уязвимости

CVSS3: 3.6
ubuntu
4 месяца назад

In OpenSSH before 10.3, command execution can occur via shell metacharacters in a username within a command line. This requires a scenario where the username on the command line is untrusted, and also requires a non-default configurations of % in ssh_config.

CVSS3: 3.6
redhat
4 месяца назад

In OpenSSH before 10.3, command execution can occur via shell metacharacters in a username within a command line. This requires a scenario where the username on the command line is untrusted, and also requires a non-default configurations of % in ssh_config.

CVSS3: 3.6
nvd
4 месяца назад

In OpenSSH before 10.3, command execution can occur via shell metacharacters in a username within a command line. This requires a scenario where the username on the command line is untrusted, and also requires a non-default configurations of % in ssh_config.

CVSS3: 3.6
msrc
4 месяца назад

Описание отсутствует

CVSS3: 3.6
debian
4 месяца назад

In OpenSSH before 10.3, command execution can occur via shell metachar ...

EPSS

Процентиль: 24%
0.00319
Низкий

3.6 Low

CVSS3

Дефекты

CWE-696