漏洞描述 【漏洞对象】OpenSSH<br>【涉及版本】openssh版本<=7.7<br>【漏洞描述】<br>OpenSSH7.7及之前版本中存在安全漏洞,该漏洞源于程序会对有效的和无效的身份验证请求发出不同的响应。攻击者可通过发送特制的请求利用该漏洞枚举用户名称。
相关漏洞推荐 CVE-2001-1473: Deprecated SSHv1 Protocol Detection POC 2025-09-01 | Deprecated SSHv1 Protocol Detection SSHv1 is deprecated and has known cryptographic issues. CVE-2018-16059: WirelessHART Fieldgate SWG70 3.0 - Local File Inclusion POC 2025-08-01 | WirelessHART Fieldgate SWG70 3.0 WirelessHART Fieldgate SWG70 3.0 is vulnerable to local file inclusion via the fcgi-bin/wgsetcgi fil... CVE-2023-48795: OpenSSH Terrapin Attack - Detection POC 2025-08-01 | OpenSSH The SSH transport protocol with certain OpenSSH extensions, found in OpenSSH before 9.6 and other pr... CVE-2018-1000600: Pre-auth Fully-responded SSRF POC 2025-09-01 | Pre-auth A exposure of sensitive information vulnerability exists in Jenkins GitHub Plugin 1.29.1 and earlier... CVE-2018-1000861: Jenkins 2.138 Remote Command Execution POC 2025-09-01 | Jenkins A code execution vulnerability exists in the Stapler web framework used by Jenkins 2.153 and earlier...