在 OpenSSH 10.6 版本之前的 sftp 服务中,攻击者可以利用服务器端的功能,在递归复制文件的过程中触发目录遍历漏洞(Directory Traversal),导致文件被写入非预期的位置。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-106585 | 6.5 MEDIUM | OpenSSH 10.6前解压缩漏洞 |
| CVE-2026-106582 | 3.7 LOW | OpenSSH <10.6 压缩漏洞 |
| CVE-2026-106587 | 3.6 LOW | OpenSSH 10.6前sshd配置项解析漏洞 |
| CVE-2026-106588 | 3.1 LOW | OpenSSH 10.6及以前macOS 27+沙盒丢失漏洞 |
| CVE-2026-106589 | 2.9 LOW | OpenSSH 10.6及以下版本权限提升漏洞 |
| CVE-2026-106584 | 2.5 LOW | OpenSSH<10.6证书过期时间错误 |
| CVE-2026-106586 | 2.5 LOW | OpenSSH <10.6 restricted关键字隧道转发绕过 |
| CVE-2026-106553 | 2.2 LOW | OpenSSH低于10.6版本GSSAPI凭证持久化漏洞 |
| CVE-2026-106555 | 2.2 LOW | OpenSSH <10.6 GSSAPI认证状态持久化漏洞 |
No comments yet