SSH Secure Shell for Servers 3.0.0 to 3.1.1 allows remote attackers to override the AllowedAuthentications configuration and use less secure authentication schemes (e.g. password) than configured for the server.
References
Configurations
Configuration 1 (hide)
|
History
20 Nov 2024, 23:41
Type | Values Removed | Values Added |
---|---|---|
References | () http://archives.neohapsis.com/archives/bugtraq/2002-05/0204.html - Patch | |
References | () http://www.ciac.org/ciac/bulletins/m-081.shtml - | |
References | () http://www.kb.cert.org/vuls/id/341187 - US Government Resource | |
References | () http://www.securityfocus.com/bid/4810 - Patch | |
References | () http://www.ssh.com/company/newsroom/article/201/ - | |
References | () http://www.ssh.com/products/ssh/advisories/authentication.cfm - Patch | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/9163 - |
Information
Published : 2002-12-31 05:00
Updated : 2024-11-20 23:41
NVD link : CVE-2002-1646
Mitre link : CVE-2002-1646
CVE.ORG link : CVE-2002-1646
JSON object : View
Products Affected
ssh
- secure_shell_for_servers
CWE