Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-1999-1085

Опубликовано: 12 июн. 1998
Источник: nvd
CVSS2: 5
EPSS Низкий

Описание

SSH 1.2.25, 1.2.23, and other versions, when used in in CBC (Cipher Block Chaining) or CFB (Cipher Feedback 64 bits) modes, allows remote attackers to insert arbitrary data into an existing stream between an SSH client and server by using a known plaintext attack and computing a valid CRC-32 checksum for the packet, aka the "SSH insertion attack."

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:ssh:secure_shell:1.2.23:*:*:*:*:*:*:*
cpe:2.3:a:ssh:secure_shell:1.2.25:*:*:*:*:*:*:*

EPSS

Процентиль: 86%
0.02792
Низкий

5 Medium

CVSS2

Дефекты

NVD-CWE-Other

Связанные уязвимости

github
больше 3 лет назад

SSH 1.2.25, 1.2.23, and other versions, when used in in CBC (Cipher Block Chaining) or CFB (Cipher Feedback 64 bits) modes, allows remote attackers to insert arbitrary data into an existing stream between an SSH client and server by using a known plaintext attack and computing a valid CRC-32 checksum for the packet, aka the "SSH insertion attack."

EPSS

Процентиль: 86%
0.02792
Низкий

5 Medium

CVSS2

Дефекты

NVD-CWE-Other