Show filters
7 Total Results
Displaying 1-7 of 7
Sort by:
Attacker Value
Unknown
CVE-2002-1715
Disclosure Date: December 31, 2002 (last updated February 22, 2025)
SSH 1 through 3, and possibly other versions, allows local users to bypass restricted shells such as rbash or rksh by uploading a script to a world-writeable directory, then executing that script to gain normal shell access.
0
Attacker Value
Unknown
CVE-2002-1644
Disclosure Date: November 25, 2002 (last updated February 22, 2025)
SSH Secure Shell for Servers and SSH Secure Shell for Workstations 2.0.13 through 3.2.1, when running without a PTY, does not call setsid to remove the child process from the process group of the parent process, which allows attackers to gain certain privileges.
0
Attacker Value
Unknown
CVE-2000-0217
Disclosure Date: February 24, 2000 (last updated February 22, 2025)
The default configuration of SSH allows X forwarding, which could allow a remote attacker to control a client's X sessions via a malicious xauth program.
0
Attacker Value
Unknown
CVE-1999-1231
Disclosure Date: June 09, 1999 (last updated February 22, 2025)
ssh 2.0.12, and possibly other versions, allows valid user names to attempt to enter the correct password multiple times, but only prompts an invalid user name for a password once, which allows remote attackers to determine user account names on the server.
0
Attacker Value
Unknown
CVE-1999-1029
Disclosure Date: May 13, 1999 (last updated February 22, 2025)
SSH server (sshd2) before 2.0.12 does not properly record login attempts if the connection is closed before the maximum number of tries, allowing a remote attacker to guess the password without showing up in the audit logs.
0
Attacker Value
Unknown
CVE-1999-0398
Disclosure Date: January 01, 1999 (last updated February 22, 2025)
In some instances of SSH 1.2.27 and 2.0.11 on Linux systems, SSH will allow users with expired accounts to login.
0
Attacker Value
Unknown
CVE-1999-1159
Disclosure Date: December 29, 1998 (last updated February 22, 2025)
SSH 2.0.11 and earlier allows local users to request remote forwarding from privileged ports without being root.
0