I Use This!
Moderate Activity
Analyzed about 20 hours ago. based on code collected 1 day ago.
 

Security

Vulnerabilities per Version

Learn more about BDSAs
 
 

Major Versions

1yr
3yr
5yr
10yr
All
click and drag to zoom
 
 
Security Vulnerabilities for Version:
Severities:
Type
Identifier Related Record Severity Date Published Description Versions Affected
CVE-2023-51385 BDSA-2023-3491 Medium Dec 18, 2023 In ssh in OpenSSH before 9.6, OS command injection might occur if a user name or host name has shell metacharacters, and this name is referenced by an more...
7.7, 7.2, 7.1, 7.0, 6.9, 6.8, 6.7, 6.3, 6.2, 6.0
CVE-2023-51384 Medium Dec 18, 2023 In ssh-agent in OpenSSH before 9.6, certain destination constraints can be incompletely applied. When destination constraints are specified during addi more...
7.7, 7.2, 7.1, 7.0, 6.9, 6.8, 6.7, 6.3, 6.2, 6.0
CVE-2023-48795 BDSA-2023-3494 Medium Dec 18, 2023 The SSH transport protocol with certain OpenSSH extensions, found in OpenSSH before 9.6 and other products, allows remote attackers to bypass integrity more...
7.7, 7.2, 7.1, 7.0, 6.9, 6.8, 6.7, 6.3, 6.2, 6.0
CVE-2023-38408 BDSA-2023-1885 Critical Jul 20, 2023 The PKCS#11 feature in ssh-agent in OpenSSH before 9.3p2 has an insufficiently trustworthy search path, leading to remote code execution if an agent is more...
7.7, 7.2, 7.1, 7.0, 6.9, 6.8, 6.7, 6.3, 6.2, 6.0
CVE-2021-41617 BDSA-2021-2848 High Sep 26, 2021 sshd in OpenSSH 6.2 through 8.x before 8.8, when certain non-default configurations are used, allows privilege escalation because supplemental groups a more...
7.7, 7.2, 7.1, 7.0, 6.9, 6.8, 6.7, 6.3, 6.2
CVE-2021-36368 BDSA-2021-4218 Low Mar 13, 2022 An issue was discovered in OpenSSH before 8.9. If a client is using public-key authentication with agent forwarding but without -oLogLevel=verbose, and more...
7.7, 7.2, 7.1, 7.0, 6.9, 6.8, 6.7, 6.3, 6.2, 6.0
CVE-2020-15778 BDSA-2020-1849 High Jul 24, 2020 scp in OpenSSH through 8.3p1 allows command injection in the scp.c toremote function, as demonstrated by backtick characters in the destination argumen more...
7.7, 7.2, 7.1, 7.0, 6.9, 6.8, 6.7, 6.3, 6.2, 6.0
CVE-2020-14145 BDSA-2020-1575 Medium Jun 29, 2020 The client side in OpenSSH 5.7 through 8.4 has an Observable Discrepancy leading to an information leak in the algorithm negotiation. This allows man-i more...
7.7, 7.2, 7.1, 7.0, 6.9, 6.8, 6.7, 6.3, 6.2, 6.0
CVE-2019-6111 BDSA-2019-0150 Medium Jan 31, 2019 An issue was discovered in OpenSSH 7.9. Due to the scp implementation being derived from 1983 rcp, the server chooses which files/directories are sent more...
7.7, 7.2, 7.1, 7.0, 6.9, 6.8, 6.7, 6.3, 6.2, 6.0
CVE-2019-6110 BDSA-2019-0149 Medium Jan 31, 2019 In OpenSSH 7.9, due to accepting and displaying arbitrary stderr output from the server, a malicious server (or Man-in-The-Middle attacker) can manipul more...
7.7, 7.2, 7.1, 7.0, 6.9, 6.8, 6.7, 6.3, 6.2, 6.0