9.3 High
CVSS2
Attack Vector
NETWORK
Attack Complexity
MEDIUM
Authentication
NONE
Confidentiality Impact
COMPLETE
Integrity Impact
COMPLETE
Availability Impact
COMPLETE
AV:N/AC:M/Au:N/C:C/I:C/A:C
6.9 Medium
AI Score
Confidence
Low
0.249 Low
EPSS
Percentile
96.7%
freeSSHd.exe in freeSSHd through 1.2.6 allows remote attackers to bypass authentication via a crafted session, as demonstrated by an OpenSSH client with modified versions of ssh.c and sshconnect2.c.
CPE | Name | Operator | Version |
---|---|---|---|
freesshd:freesshd | freesshd | le | 1.2.6 |
freesshd:freesshd | freesshd | eq | 1.2.1 |
freesshd:freesshd | freesshd | eq | 1.2.2 |