在 OpenSSH 10.6 版本之前的 sshd 中,当 GSSAPI 认证尝试失败时,凭证可能会错误地保留下来。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-106585 | 6.5 MEDIUM | OpenSSH 10.6前解压缩漏洞 |
| CVE-2026-106552 | 4.2 MEDIUM | OpenSSH sftp远程目录遍历漏洞 |
| CVE-2026-106582 | 3.7 LOW | OpenSSH <10.6 压缩漏洞 |
| CVE-2026-106587 | 3.6 LOW | OpenSSH 10.6前sshd配置项解析漏洞 |
| CVE-2026-106588 | 3.1 LOW | OpenSSH 10.6及以前macOS 27+沙盒丢失漏洞 |
| CVE-2026-106589 | 2.9 LOW | OpenSSH 10.6及以下版本权限提升漏洞 |
| CVE-2026-106584 | 2.5 LOW | OpenSSH<10.6证书过期时间错误 |
| CVE-2026-106586 | 2.5 LOW | OpenSSH <10.6 restricted关键字隧道转发绕过 |
| CVE-2026-106555 | 2.2 LOW | OpenSSH <10.6 GSSAPI认证状态持久化漏洞 |
No comments yet