7.5

CVE-1999-1029

SSH server (sshd2) before 2.0.12 does not properly record login attempts if the connection is closed before the maximum number of tries, allowing a remote attacker to guess the password without showing up in the audit logs.

Data is provided by the National Vulnerability Database (NVD)
SshSsh2 Version2.0
SshSsh2 Version2.0.1
SshSsh2 Version2.0.2
SshSsh2 Version2.0.3
SshSsh2 Version2.0.4
SshSsh2 Version2.0.5
SshSsh2 Version2.0.6
SshSsh2 Version2.0.7
SshSsh2 Version2.0.8
SshSsh2 Version2.0.9
SshSsh2 Version2.0.10
SshSsh2 Version2.0.11
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.72% 0.701
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 7.5 10 6.4
AV:N/AC:L/Au:N/C:P/I:P/A:P