Skip to main content

Vendor archive

ssh CVEs

Beta · best-effort

42 CVEs tagged to vendor ssh5 Critical, 19 High, 14 Medium, 4 Low, 0 Unrated.

CVE-2001-0259

Published Jun 2, 2001

ssh-keygen in ssh 1.2.27 - 1.2.30 with Secure-RPC can allow local attackers to recover a SUN-DES-1 magic phrase generated by another user, which the attacker can use to decrypt th…

CVSS 3.6 · Low
Vendor/product tagsBeta · best-effort

CVE-2001-0144

Published Mar 12, 2001

CORE SDI SSH1 CRC-32 compensation attack detector allows remote attackers to execute arbitrary commands on an SSH server or client via an integer overflow.

CVSS 10.0 · Critical
Buzz score
4.0
OTX pulse activity
Vendor/product tagsBeta · best-effort

CVE-2001-1469

Published Jan 18, 2001

The RC4 stream cipher as used by SSH1 allows remote attackers to modify messages without detection by XORing the original message's cyclic redundancy check (CRC) with the CRC of a…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2001-1470

Published Jan 18, 2001

The IDEA cipher as implemented by SSH1 does not protect the final block of a message against modification, which allows remote attackers to modify the block without detection by c…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2001-1473

Published Jan 18, 2001

The SSH-1 protocol allows remote servers to conduct man-in-the-middle attacks and replay a client challenge response to a target server by creating a Session ID that matches the S…

CVSS 7.5 · High
Buzz score
8.0
OTX pulse activity
Vendor/product tagsBeta · best-effort

CVE-2001-1474

Published Jan 18, 2001

SSH before 2.0 disables host key checking when connecting to the localhost, which allows remote attackers to silently redirect connections to the localhost by poisoning the client…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2001-1475

Published Jan 18, 2001

SSH before 2.0, when using RC4 and password authentication, allows remote attackers to replay messages until a new server key (VK) is generated.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2001-1476

Published Jan 18, 2001

SSH before 2.0, with RC4 encryption and the "disallow NULL passwords" option enabled, makes it easier for remote attackers to guess portions of user passwords by replaying user se…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2000-0992

Published Dec 19, 2000

Directory traversal vulnerability in scp in sshd 1.2.xx allows a remote malicious scp server to overwrite arbitrary files via a .. (dot dot) attack.

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2000-0575

Published Jul 5, 2000

SSH 1.2.27 with Kerberos authentication support stores Kerberos tickets in a file which is created in the current directory of the user who is logging in, which could allow remote…

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2000-0217

Published Feb 24, 2000

The default configuration of SSH allows X forwarding, which could allow a remote attacker to control a client's X sessions via a malicious xauth program.

CVSS 5.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2000-0143

Published Feb 11, 2000

The SSH protocol server sshd allows local users without shell access to redirect a TCP connection through a service that uses the standard system password database for authenticat…

CVSS 4.6 · Medium
Vendor/product tagsBeta · best-effort

CVE-1999-0787

Published Sep 17, 1999

The SSH authentication agent follows symlinks via a UNIX domain socket.

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort

CVE-1999-1231

Published Jun 9, 1999

ssh 2.0.12, and possibly other versions, allows valid user names to attempt to enter the correct password multiple times, but only prompts an invalid user name for a password once…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-1999-1029

Published May 13, 1999

SSH server (sshd2) before 2.0.12 does not properly record login attempts if the connection is closed before the maximum number of tries, allowing a remote attacker to guess the pa…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-1999-0248

Published Jan 1, 1999

A race condition in the authentication agent mechanism of sshd 1.2.17 allows an attacker to steal another user's credentials.

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-1999-0398

Published Jan 1, 1999

In some instances of SSH 1.2.27 and 2.0.11 on Linux systems, SSH will allow users with expired accounts to login.

CVSS 4.6 · Medium
Vendor/product tagsBeta · best-effort
Showing 26-42 of 42 CVEsPage 2 of 2