Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
SSH before 2.0, with RC4 encryption and the "disallow NULL passwords" option enabled, makes it easier for remote attackers to guess portions of user passwords by replaying user sessions with certain modifications, which trigger different messages depending on whether the guess is correct or not.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
SSH用户密码猜测漏洞
Vulnerability Description
带有RC4加密术以及"disallow NULL passwords"选项可用的SSH 2.0之前版本存在漏洞。远程攻击者更容易通过重放带有某些修改的用户会话来猜测用户密码部分,该漏洞触发了取决于猜测是否正确的不同消息。
CVSS Information
N/A
Vulnerability Type
N/A