Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
ssh vulnerabilities and exploits
(subscribe to this query)
357
VMScore
CVE-2022-23112
A missing permission check in Jenkins Publish Over SSH Plugin 1.22 and previous versions allows attackers with Overall/Read access to connect to an attacker-specified SSH server using attacker-specified credentials.
Jenkins Publish Over Ssh
357
VMScore
CVE-2022-23113
Jenkins Publish Over SSH Plugin 1.22 and previous versions performs a validation of the file name specifying whether it is present or not, resulting in a path traversal vulnerability allowing attackers with Item/Configure permission to discover the name of the Jenkins controller ...
Jenkins Publish Over Ssh
445
VMScore
CVE-2009-1273
pam_ssh 1.92 and possibly other versions, as used when PAM is compiled with USE=ssh, generates different error messages depending on whether the username is valid or invalid, which makes it easier for remote malicious users to enumerate usernames.
Andrew J.korty Pam Ssh 1.92
694
VMScore
CVE-2008-0534
The SSH server in (1) Cisco Service Control Engine (SCE) prior to 3.1.6, and (2) Icon Labs Iconfidant SSH prior to 2.3.8, allows remote malicious users to cause a denial of service (device restart or daemon outage) via a high rate of login attempts, aka Bug ID CSCsi68582.
Cisco Service Control Engine
Icon-labs Iconfidant Ssh
694
VMScore
CVE-2008-0535
Unspecified vulnerability in the SSH server in (1) Cisco Service Control Engine (SCE) prior to 3.1.6, and (2) Icon Labs Iconfidant SSH prior to 2.3.8, allows remote malicious users to cause a denial of service (device instability) via "SSH credentials that attempt to change ...
Icon-labs Iconfidant Ssh
Cisco Service Control Engine
614
VMScore
CVE-2021-1572
A vulnerability in ConfD could allow an authenticated, local malicious user to execute arbitrary commands at the level of the account under which ConfD is running, which is commonly root. To exploit this vulnerability, an attacker must have a valid account on an affected device. ...
Cisco Confd
Cisco Network Services Orchestrator
506
VMScore
CVE-2020-9283
golang.org/x/crypto before v0.0.0-20200220183623-bac4c82f6975 for Go allows a panic during signature verification in the golang.org/x/crypto/ssh package. A client can attack an SSH server that accepts public keys. Also, a server can attack any SSH client.
Golang Package Ssh 0.0.0-20200220183623-bac4c82f6975
Debian Debian Linux 9.0
1 EDB exploit
3 Github repositories
694
VMScore
CVE-2008-0536
Unspecified vulnerability in the SSH server in (1) Cisco Service Control Engine (SCE) 3.0.x prior to 3.0.7 and 3.1.x prior to 3.1.0, and (2) Icon Labs Iconfidant SSH prior to 2.3.8, allows remote malicious users to cause a denial of service (management interface outage) via SSH t...
Cisco Service Control Engine
Cisco Service Control Engine 3.0
Icon-labs Iconfidant Ssh
632
VMScore
CVE-2005-1021
Memory leak in Secure Shell (SSH) in Cisco IOS 12.0 up to and including 12.3, when authenticating against a TACACS+ server, allows remote malicious users to cause a denial of service (memory consumption) via an incorrect username or password.
Cisco Ios 12.1ax
Cisco Ios 12.1az
Cisco Ios 12.1eu
Cisco Ios 12.1ew
Cisco Ios 12.1xi
Cisco Ios 12.1xl
Cisco Ios 12.1xv
Cisco Ios 12.1ya
Cisco Ios 12.1yi
Cisco Ios 12.2
Cisco Ios 12.2s
Cisco Ios 12.2se
Cisco Ios 12.2sxb
Cisco Ios 12.2sxd
Cisco Ios 12.2xn
Cisco Ios 12.2xs
Cisco Ios 12.3xd
Cisco Ios 12.3xe
Cisco Ios 12.3xl
Cisco Ios 12.3xm
Cisco Ios 12.3xy
Cisco Ios 12.3ya
NA
CVE-2023-48795
The SSH transport protocol with certain OpenSSH extensions, found in OpenSSH prior to 9.6 and other products, allows remote malicious users to bypass integrity checks such that some packets are omitted (from the extension negotiation message), and a client and server may conseque...
Openbsd Openssh
Putty Putty
Filezilla-project Filezilla Client
Microsoft Powershell
Panic Transmit 5
Panic Nova
Roumenpetrov Pkixssh
Winscp Winscp
Bitvise Ssh Client
Bitvise Ssh Server
Lancom-systems Lcos
Lancom-systems Lcos Fx -
Lancom-systems Lcos Lx -
Lancom-systems Lcos Sx 5.20
Lancom-systems Lcos Sx 4.20
Lancom-systems Lanconfig -
Vandyke Securecrt
Libssh Libssh
Net-ssh Net-ssh 7.2.0
Ssh2 Project Ssh2
Proftpd Proftpd
Freebsd Freebsd
8 Github repositories
1 Article
VMScore
CVSSv2
CVSSv3
VMScore
Recommendations:
SSTI
CVE-2024-35863
CVE-2024-35910
man-in-the-middle
CVE-2024-35912
CVE-2024-25742
LFI
CVE-2024-32002
CVE-2024-22120
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
5
6
7
8
9
10
NEXT »