7.5
CVSSv2

CVE-2001-0572

Published: 22/08/2001 Updated: 05/09/2008
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

The SSH protocols 1 and 2 (aka SSH-2) as implemented in OpenSSH and other packages have various weaknesses which can allow a remote malicious user to obtain the following information via sniffing: (1) password lengths or ranges of lengths, which simplifies brute force password guessing, (2) whether RSA or DSA authentication is being used, (3) the number of authorized_keys in RSA authentication, or (4) the lengths of shell commands.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

openbsd openssh 4.5

ssh ssh 1.2.30

ssh ssh 1.2.25

ssh ssh 1.2.26

ssh ssh 1.2.27

ssh ssh 1.2.28

ssh ssh 1.2.29

ssh ssh 1.2.24

ssh ssh 1.2.31