OpenSSH(OpenBSD Secure Shell)是OpenBSD计划组的一套用于安全访问远程计算机的连接工具。该工具是SSH协议的开源实现,支持对所有的传输进行加密,可有效阻止窃听、连接劫持以及其他网络级的攻击。 OpenSSH 8.2版本中存在安全漏洞,该漏洞源于在utimes系统调用失败时,scp客户端错误地向服务器发送了重复的响应。攻击者可通过在远程服务器上创建子目录利用该漏洞覆盖客户端下载目录中的任意文件。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2014-8937 | Lexiglot 资源管理错误漏洞 | |
| CVE-2019-15709 | Fortinet FortiAP-S、FortiAP-W2和FortiAP-U 输入验证错误漏洞 | |
| CVE-2020-13758 | Bitrix24 Web Application Firewall 跨站脚本漏洞 | |
| CVE-2020-13757 | Python-RSA 加密问题漏洞 | |
| CVE-2020-13695 | QuickBox 安全漏洞 | |
| CVE-2014-9702 | 2pi Software Cmfive 安全漏洞 | |
| CVE-2014-7173 | FarSite Communications FarLinX X25 Gateway 操作系统命令注入漏洞 | |
| CVE-2014-7175 | FarSite Communications FarLinX X25 Gateway 缓冲区错误漏洞 | |
| CVE-2014-7174 | FarSite Communications FarLinX X25 Gateway 路径遍历漏洞 | |
| CVE-2014-8941 | Lexiglot SQL注入漏洞 | |
| CVE-2014-8942 | Lexiglot 跨站请求伪造漏洞 | |
| CVE-2014-8943 | Lexiglot 代码问题漏洞 | |
| CVE-2014-8944 | Lexiglot 跨站脚本漏洞 | |
| CVE-2020-6868 | ZTE F680 输入验证错误漏洞 | |
| CVE-2014-8938 | Lexiglot 安全漏洞 | |
| CVE-2014-8939 | Lexiglot 路径遍历漏洞 | |
| CVE-2014-8940 | Lexiglot 信息泄露漏洞 | |
| CVE-2014-8945 | Lexiglot 操作系统命令注入漏洞 | |
| CVE-2020-13694 | QuickBox 操作系统命令注入漏洞 | |
| CVE-2020-13448 | QuickBox 操作系统命令注入漏洞 |
Showing top 20 of 26 CVEs. View all on vendor page → →
No comments yet