Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

Jaeyeon Jung

#53612de 53,638
1.2CVSS total
Vulnerabilidades · 1
PT-2005-3554
1.2
2005-08-23
Openssh · Openssh · CVE-2005-2666
**Name of the Vulnerable Software and Affected Versions** OpenSSH versions prior to 4.0 **Description** The issue allows an attacker that has compromised an SSH user's account to more easily generate a list of additional targets that are more likely to have the same password or key. This is because hostnames, IP addresses, and keys are stored in plaintext in the known hosts file. **Recommendations** For OpenSSH versions prior to 4.0, update to version 4.0 or later to resolve the issue.