cbcvebase.
CVE-2018-20685
published 2019-01-10

CVE-2018-20685: In OpenSSH 7.9, scp.c in the scp client allows remote SSH servers to bypass intended access restrictions via the filename of . or an empty filename. The impact…

medium5.3CVSS 3.1
AVNACHPRNUIRSUCNIHAN
ITW
Exploited in the wild
In OpenSSH 7.9, scp.c in the scp client allows remote SSH servers to bypass intended access restrictions via the filename of . or an empty filename. The impact is modifying the permissions of the target directory on the client side.

Affected

53 ranges· showing 25
VendorProductVersion rangeFixed in
canonicalubuntu_linux
canonicalubuntu_linux
canonicalubuntu_linux
canonicalubuntu_linux
debiandebian_linux
debiandebian_linux
debiandropbear< dropbear 2020.79-1 (bookworm)dropbear 2020.79-1 (bookworm)
debiannetkit-rsh< netkit-rsh 0.17-20 (bookworm)netkit-rsh 0.17-20 (bookworm)
debianopenssh< openssh 1:7.9p1-5 (bookworm)openssh 1:7.9p1-5 (bookworm)
dropbear_ssh_projectdropbear_ssh< 2020.792020.79
dropbear_ssh_projectdropbear_ssh>= 0 < 2020.79-12020.79-1
dropbear_ssh_projectdropbear_ssh>= 0 < 2020.79-12020.79-1
dropbear_ssh_projectdropbear_ssh>= 0 < 2020.79-12020.79-1
dropbear_ssh_projectdropbear_ssh>= 0 < 2020.79-12020.79-1
fedoraprojectfedora
fedoraprojectfedora
fedoraprojectfedora
fujitsum10-1_firmware< xcp2361xcp2361
fujitsum10-1_firmware< xcp3070xcp3070
fujitsum10-4_firmware< xcp2361xcp2361
fujitsum10-4_firmware< xcp3070xcp3070
fujitsum10-4s_firmware< xcp2361xcp2361
fujitsum10-4s_firmware< xcp3070xcp3070
fujitsum12-1_firmware< xcp2361xcp2361
fujitsum12-1_firmware< xcp3070xcp3070

CVSS provenance

nvdv3.18.1HIGHCVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
osv5.3MEDIUM
vulncheck5.3MEDIUM