CVE-2005-2798 PUBLISHED CVSS 5 MEDIUM

sshd in OpenSSH before 4.2, when GSSAPIDelegateCredentials is enabled, allows GSSAPI credentials to be delegated to clients who log in using non-GSSAPI methods, which could cause those credentials to be exposed to untrusted users or hosts.

EPSS 2.74% · 85.9th percentile

Risk Scores

CVSS v2.0
5
EPSS Score
2.74%
85.9th percentile

Affected Products

VendorProductVersions
openbsdopenssh4.1p1, 3.0, 3.0.1
n/an/an/a

Timeline

References

…and 7 more

Open in Interactive Console →