V
Scaner-VS
HomeCatalogSourcesCWECAPECATT&CKMitigationsProductsVendorsDocs
CVE-2001-0553
CVE
HighConfirmedExploit available

SSH Secure Shell 3.0.0 on Unix systems does not properly perform password authentication to the sshd2 daemon, which allows local users to g…

CVSS
7.2
High
EPSS
0.01
p67
Published
2001-01-01
Updated
2001-01-01
Description

SSH Secure Shell 3.0.0 on Unix systems does not properly perform password authentication to the sshd2 daemon, which allows local users to gain access to accounts with short password fields, such as locked accounts that use "NP" in the password field.

Affected products
Secure_shell
CVSS vector
AV:L/AC:L/Au:N/C:C/I:C/A:C
Timeline
2001-01-01
Published
2001-01-01
Updated
CVSS 3.1 breakdown
Attack Vector
AV: L
Local (L)
Attack Complexity
AC: L
Low (L)
Authentication
Au: N
None (N)
Confidentiality Impact
C: C
Complete
Integrity Impact
I: C
Complete
Availability Impact
A: C
Complete
Exploit indicators
EPSS
0.013 · p67
Known exploited (KEV)
No
Known exploits — Сканер-ВС
21021
exploitdb · https://www.exploit-db.com/exploits/21021
Enterprise
Affected products
ProductVendorStatus
secure_shell*Tracked
Source databases
CVE