Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2007-4321

Опубликовано: 14 авг. 2007
Источник: nvd
CVSS2: 6.8
EPSS Средний

Описание

fail2ban 0.8 and earlier does not properly parse sshd log files, which allows remote attackers to add arbitrary hosts to the /etc/hosts.deny file and cause a denial of service by adding arbitrary IP addresses to the sshd log file, as demonstrated by logging in via ssh with a client protocol version identification containing an IP address string, a different vector than CVE-2006-6302.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:fail2ban:fail2ban:0.8:*:*:*:*:*:*:*

EPSS

Процентиль: 93%
0.11824
Средний

6.8 Medium

CVSS2

Дефекты

NVD-CWE-Other

Связанные уязвимости

ubuntu
около 18 лет назад

fail2ban 0.8 and earlier does not properly parse sshd log files, which allows remote attackers to add arbitrary hosts to the /etc/hosts.deny file and cause a denial of service by adding arbitrary IP addresses to the sshd log file, as demonstrated by logging in via ssh with a client protocol version identification containing an IP address string, a different vector than CVE-2006-6302.

debian
около 18 лет назад

fail2ban 0.8 and earlier does not properly parse sshd log files, which ...

github
больше 3 лет назад

fail2ban 0.8 and earlier does not properly parse sshd log files, which allows remote attackers to add arbitrary hosts to the /etc/hosts.deny file and cause a denial of service by adding arbitrary IP addresses to the sshd log file, as demonstrated by logging in via ssh with a client protocol version identification containing an IP address string, a different vector than CVE-2006-6302.

EPSS

Процентиль: 93%
0.11824
Средний

6.8 Medium

CVSS2

Дефекты

NVD-CWE-Other