Show filters
106 Total Results
Displaying 61-70 of 106
Sort by:
Attacker Value
Unknown
CVE-2006-4315
Disclosure Date: August 23, 2006 (last updated October 04, 2023)
Unquoted Windows search path vulnerability in multiple SSH Tectia products, including Client/Server/Connector 5.0.0 and 5.0.1 and Client/Server before 4.4.5, and Manager 2.12 and earlier, when running on Windows, might allow local users to gain privileges via a malicious program file under "Program Files" or its subdirectories.
0
Attacker Value
Unknown
CVE-2006-1320
Disclosure Date: March 20, 2006 (last updated February 22, 2025)
util.c in rssh 2.3.0 in Debian GNU/Linux does not use braces to make a block, which causes a check for CVS to always succeed and allows rsync and rdist to bypass intended access restrictions in rssh.conf.
0
Attacker Value
Unknown
CVE-2006-1206
Disclosure Date: March 14, 2006 (last updated February 22, 2025)
Matt Johnston Dropbear SSH server 0.47 and earlier, as used in embedded Linux devices and on general-purpose operating systems, allows remote attackers to cause a denial of service (connection slot exhaustion) via a large number of connection attempts that exceeds the MAX_UNAUTH_CLIENTS defined value of 30.
0
Attacker Value
Unknown
CVE-2005-3345
Disclosure Date: December 28, 2005 (last updated February 22, 2025)
rssh 2.0.0 through 2.2.3 allows local users to bypass access restrictions and gain root privileges by using the rssh_chroot_helper command to chroot to an external directory.
0
Attacker Value
Unknown
CVE-2005-4310
Disclosure Date: December 17, 2005 (last updated February 22, 2025)
SSH Tectia Server 5.0.0 (A, F, and T), when allowing host-based authentication only, allows users to log in with the wrong credentials.
0
Attacker Value
Unknown
CVE-2005-4178
Disclosure Date: December 12, 2005 (last updated February 22, 2025)
Buffer overflow in Dropbear server before 0.47 allows authenticated users to execute arbitrary code via unspecified inputs that cause insufficient memory to be allocated due to an incorrect expression that does not enforce the proper order of operations.
0
Attacker Value
Unknown
CVE-2005-2146
Disclosure Date: July 05, 2005 (last updated February 22, 2025)
SSH Tectia Server 4.3.1 and earlier, and SSH Secure Shell for Windows Servers, uses insecure permissions when generating the Secure Shell host identification key, which allows local users to access the key and spoof the server.
0
Attacker Value
Unknown
CVE-2004-1161
Disclosure Date: January 10, 2005 (last updated February 22, 2025)
rssh 2.2.2 and earlier does not properly restrict programs that can be run, which could allow remote authenticated users to bypass intended access restrictions and execute arbitrary programs via (1) rdist -P, (2) rsync, or (3) scp -S.
0
Attacker Value
Unknown
CVE-2004-2486
Disclosure Date: December 31, 2004 (last updated February 22, 2025)
The DSS verification code in Dropbear SSH Server before 0.43 frees uninitialized variables, which might allow remote attackers to gain access.
0
Attacker Value
Unknown
CVE-2004-0609
Disclosure Date: December 06, 2004 (last updated February 22, 2025)
rssh 2.0 through 2.1.x expands command line arguments before entering a chroot jail, which allows remote authenticated users to determine the existence of files in a directory outside the jail.
0