Skip to main content

Vendor/product archive

ssh / ssh2 CVEs

Beta · best-effort

8 CVEs tagged to ssh / ssh21 Critical, 3 High, 4 Medium, 0 Low, 0 Unrated.

CVE-2002-1715

Published Dec 31, 2002

SSH 1 through 3, and possibly other versions, allows local users to bypass restricted shells such as rbash or rksh by uploading a script to a world-writeable directory, then execu…

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2002-1644

Published Nov 25, 2002

SSH Secure Shell for Servers and SSH Secure Shell for Workstations 2.0.13 through 3.2.1, when running without a PTY, does not call setsid to remove the child process from the proc…

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2002-1645

Published Nov 25, 2002

Buffer overflow in the URL catcher feature for SSH Secure Shell for Workstations client 3.1 to 3.2.0 allows remote attackers to execute arbitrary code via a long URL.

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2001-0364

Published Jun 27, 2001

SSH Communications Security sshd 2.4 for Windows allows remote attackers to create a denial of service via a large number of simultaneous connections.

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2000-0217

Published Feb 24, 2000

The default configuration of SSH allows X forwarding, which could allow a remote attacker to control a client's X sessions via a malicious xauth program.

CVSS 5.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-1999-1231

Published Jun 9, 1999

ssh 2.0.12, and possibly other versions, allows valid user names to attempt to enter the correct password multiple times, but only prompts an invalid user name for a password once…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-1999-1029

Published May 13, 1999

SSH server (sshd2) before 2.0.12 does not properly record login attempts if the connection is closed before the maximum number of tries, allowing a remote attacker to guess the pa…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-1999-0398

Published Jan 1, 1999

In some instances of SSH 1.2.27 and 2.0.11 on Linux systems, SSH will allow users with expired accounts to login.

CVSS 4.6 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-8 of 8 CVEsPage 1 of 1