Show filters
18 Total Results
Displaying 11-18 of 18
Sort by:
Attacker Value
Unknown

CVE-2012-6066

Disclosure Date: December 04, 2012 (last updated October 05, 2023)
freeSSHd.exe in freeSSHd through 1.2.6 allows remote attackers to bypass authentication via a crafted session, as demonstrated by an OpenSSH client with modified versions of ssh.c and sshconnect2.c.
0
Attacker Value
Unknown

CVE-2009-3340

Disclosure Date: September 24, 2009 (last updated October 04, 2023)
Unspecified vulnerability in FreeSSHD 1.2.4 allows remote attackers to cause a denial of service via unknown vectors, as demonstrated by a certain module in VulnDisco Pack Professional 8.11. NOTE: as of 20090917, this disclosure has no actionable information. However, because the VulnDisco Pack author is a reliable researcher, the issue is being assigned a CVE identifier for tracking purposes.
0
Attacker Value
Unknown

CVE-2008-6899

Disclosure Date: August 05, 2009 (last updated October 04, 2023)
Multiple buffer overflows in freeSSHd 1.2.1 allow remote authenticated users to cause a denial of service (crash) and execute arbitrary code via a long (1) open, (2) unlink, (3) mkdir, (4) rmdir, or (5) stat SFTP command.
0
Attacker Value
Unknown

CVE-2008-4762

Disclosure Date: October 28, 2008 (last updated October 04, 2023)
Stack-based buffer overflow in freeSSHd 1.2.1 allows remote authenticated users to cause a denial of service (service crash) and potentially execute arbitrary code via a long argument to the (1) rename and (2) realpath parameters.
0
Attacker Value
Unknown

CVE-2008-2573

Disclosure Date: June 06, 2008 (last updated October 04, 2023)
Stack-based buffer overflow in SFTP in freeSSHd 1.2.1 allows remote authenticated users to execute arbitrary code via a long directory name in an SSH_FXP_OPENDIR (aka opendir) command.
0
Attacker Value
Unknown

CVE-2008-0852

Disclosure Date: February 21, 2008 (last updated October 04, 2023)
freeSSHd 1.2 and earlier allows remote attackers to cause a denial of service (crash) via a SSH2_MSG_NEWKEYS packet to TCP port 22, which triggers a NULL pointer dereference.
0
Attacker Value
Unknown

CVE-2006-2407

Disclosure Date: May 16, 2006 (last updated October 04, 2023)
Stack-based buffer overflow in (1) WeOnlyDo wodSSHServer ActiveX Component 1.2.7 and 1.3.3 DEMO, as used in other products including (2) FreeSSHd 1.0.9 and (3) freeFTPd 1.0.10, allows remote attackers to execute arbitrary code via a long key exchange algorithm string.
0
Attacker Value
Unknown

CVE-2002-0460

Disclosure Date: August 12, 2002 (last updated October 03, 2023)
Bitvise WinSSHD before 2002-03-16 allows remote attackers to cause a denial of service (resource exhaustion) via a large number of incomplete connections that are not properly terminated, which are not properly freed by SSHd.
0