Lucene search

K

Securecrt Security Vulnerabilities

cve
cve

CVE-2001-1466

Buffer overflow in VanDyke SecureCRT before 3.4.2, when using the SSH-1 protocol, allows remote attackers to execute arbitrary code via a long (1) username or (2) password.

8.3AI Score

0.033EPSS

2005-04-21 04:00 AM
21
cve
cve

CVE-2002-1059

Buffer overflow in Van Dyke SecureCRT SSH client before 3.4.6, and 4.x before 4.0 beta 3, allows an SSH server to execute arbitrary code via a long SSH1 protocol version string.

7.7AI Score

0.132EPSS

2003-04-02 05:00 AM
18
cve
cve

CVE-2003-0047

SSH2 clients for VanDyke (1) SecureCRT 4.0.2 and 3.4.7, (2) SecureFX 2.1.2 and 2.0.4, and (3) Entunnel 1.0.2 and earlier, do not clear logon credentials from memory, including plaintext passwords, which could allow attackers with access to memory to steal the SSH credentials.

6.6AI Score

0.001EPSS

2003-02-19 05:00 AM
30
cve
cve

CVE-2004-1541

SecureCRT 4.0, 4.1, and possibly other versions, allows remote attackers to execute arbitrary commands via a telnet:// URL that uses the /F option to specify a configuration file on a samba share.

7.7AI Score

0.226EPSS

2005-02-19 05:00 AM
27
cve
cve

CVE-2006-1038

Buffer overflow in SecureCRT 5.0.4 and earlier and SecureFX 3.0.4 and earlier allows remote attackers to have an unknown impact when a Unicode string is converted to a "narrow" string.

7AI Score

0.019EPSS

2006-03-07 11:02 AM
38