SSH Family for Nessus Network Monitor

IDNameSeverity
4761SSH Tectia CBC Information Disclosure
medium
4632Attachmate Reflection for Secure IT UNIX Server < 7.0 SP1 Multiple Vulnerabilities
medium
4628Reflections SSH Server Version Detection
info
4598OpenSSH X11 < 5.1 Session Hijacking
medium
4459OpenSSH < 5.0 X11 Forwarding Local Session Hijacking
medium
4422SSF Server Detection
low
4335SSH Tectia Server < 5.2.4 / 5.3.6 Local Privilege Escalation
high
4214WinSCP < 4.0.4 URL Protocol Handler Arbitrary File Transfer
medium
4209OpenSSH < 4.7 Trusted X11 Cookie Connection Policy Bypass
high
3929Dropbear SSH Server < 0.49.0 Hostkey Host Spoofing Vulnerability
medium
3821SSH Server Detection (Non-standard Port)
info
3787OpenSSH < 4.1.0p2 / 4.2 Timing Attack
medium
3754OpenBSD Portable OpenSSH < 4.4.p1 GSSAPI Authentication Overflow
high
3751OpenSSH < 4.4 Multiple Vulnerabilities
low
3648WinSCP < 3.8.2 Arbitrary Command Insertion
high
3620FortressSSH < 0.47 SSH_MSG_KEXINIT Logging Remote Overflow
high
3466Dropbear SSH Server < 0.48.0 DoS
medium
3432SSH Tectia Server SFTP Filename Logging Format String
medium
3428AttachmateWRQ Reflection for Secure IT Server SFTP Format String
medium
3380Lysator LSH Seed-file File Descriptor Leak (deprecated)
low
3331Dropbear SSH Server < 0.47.0 svr_ses.childpidsize Remote Overflow
medium
3329SSH Tectia Server < 5.0.1 Host Authentication Authorization Bypass
high
3207AttachmateWRQ Reflection for Secure IT Server < 6.0 Build 24 Multiple Vulnerabilities
medium
3205OpenSSH < 4.2p1 GSSAPI Authentication Credential Escalation
medium
3059SSH Valid Banner Check
info
3043Tectia SSH Server < 4.3.2 Local Key Disclosure
medium
2716Lysator < 2.0.1 LSH Unspecified Remote DoS
medium
2637PuTTY < 0.57 SFTP Remote Buffer Overflow
high
2427Van Dyke SecureCRT < 4.1.9 Telnet URI Remote Command Execution
high
2371PuTTY < 0.56 Remote SSH2_MSG_DEBUG Buffer Overflow
medium
1999Putty < 0.54 SSH2 Authentication Password Persistence Weakness
medium
1998PuTTY < 0.55 modpow Function Arbitrary Code Execution
medium
1997OpenSSH Detection
info
1996Portable OpenSSH < 3.7.1p2 Multiple PAM Vulnerabilities
high
1995LSH < 1.5 lshd Daemon Remote Overflow
high
1994OpenSSH < 3.7 buffer_append_space Function Overflow
critical
1993Dropbear SSH Server Format String (deprecated)
high
1992OpenSSH < 3.0.2 UseLogin Environment Variable Local Command Execution
high
1991OpenSSH < 2.1.1 UseLogin Local Privilege Escalation
high
1990OpenSSH < 3.1 Channel Code Off by One Privilege Escalation
high
1989OpenSSH < 3.2.1 AFS/Kerberos Ticket/Token Passing Overflow
high
1988OpenSSH < 2.9.9 Multiple Key Type ACL Bypass
medium
1987OpenSSH < 3.4 Multiple Remote Overflows
high
1986OpenSSH < 3.0.1 Multiple Vulnerabilities
high
1985OpenSSH < 2.3.2 SSHv2 Public Key Authentication Bypass
critical
1984Portable OpenSSH < 3.6.1p2 PAM Timing Side-Channel Weakness
medium
1983SSH < 3.0.1 Locked Account Remote Authentication Bypass
medium
1982SSH < 3.1.2 AllowedAuthentications Remote Bypass (deprecated)
low
1981SSH-1 < 1.2.31 SSH Daemon Account Login Attempt Logging Failure
high
1980SSH1 CRC-32 detect_attack Function Overflow
critical