SSH Communications Security SSH2 2.0.4

CPE Details

SSH Communications Security SSH2 2.0.4
2.0.4
2007-08-23
19h16 +00:00
2008-03-25
18h18 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:ssh:ssh2:2.0.4:*:*:*:*:*:*:*

Informations

Vendor

ssh

Product

ssh2

Version

2.0.4

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2002-1715 2005-06-21 02h00 +00:00 SSH 1 through 3, and possibly other versions, allows local users to bypass restricted shells such as rbash or rksh by uploading a script to a world-writeable directory, then executing that script to gain normal shell access.
7.2
CVE-1999-1029 2001-09-12 02h00 +00:00 SSH server (sshd2) before 2.0.12 does not properly record login attempts if the connection is closed before the maximum number of tries, allowing a remote attacker to guess the password without showing up in the audit logs.
7.5
CVE-1999-1231 2001-09-12 02h00 +00:00 ssh 2.0.12, and possibly other versions, allows valid user names to attempt to enter the correct password multiple times, but only prompts an invalid user name for a password once, which allows remote attackers to determine user account names on the server.
5
CVE-2000-0217 2000-04-10 02h00 +00:00 The default configuration of SSH allows X forwarding, which could allow a remote attacker to control a client's X sessions via a malicious xauth program.
5.1