Описание
CRLF injection vulnerability in Dropbear SSH before 2016.72 allows remote authenticated users to bypass intended shell-command restrictions via crafted X11 forwarding data.
Ссылки
Уязвимые конфигурации
Конфигурация 1Версия до 2015.71 (включая)
cpe:2.3:a:dropbear_ssh_project:dropbear_ssh:*:*:*:*:*:*:*:*
EPSS
Процентиль: 96%
0.27583
Средний
6.4 Medium
CVSS3
5.5 Medium
CVSS2
Дефекты
NVD-CWE-Other
Связанные уязвимости
CVSS3: 6.4
ubuntu
почти 10 лет назад
CRLF injection vulnerability in Dropbear SSH before 2016.72 allows remote authenticated users to bypass intended shell-command restrictions via crafted X11 forwarding data.
CVSS3: 6.4
debian
почти 10 лет назад
CRLF injection vulnerability in Dropbear SSH before 2016.72 allows rem ...
CVSS3: 6.4
github
больше 3 лет назад
CRLF injection vulnerability in Dropbear SSH before 2016.72 allows remote authenticated users to bypass intended shell-command restrictions via crafted X11 forwarding data.
EPSS
Процентиль: 96%
0.27583
Средний
6.4 Medium
CVSS3
5.5 Medium
CVSS2
Дефекты
NVD-CWE-Other