|
|
Vulnerability Assessment & Network Security Forums |
|||||||||
|
If through a vulnerability assessment, a network security issue is detected for the vulnerability below, applying the appropriate security patches in a timely matter is very important. If you have detected that your system has already been compromised, following CERT's Network Security recovery document will assist with recommended steps for system recovery. Home >> Browse Vulnerability Assessment Database >> Gain a shell remotely >> SSH1 SSH Daemon Logging Failure Vulnerability Assessment Details
|
SSH1 SSH Daemon Logging Failure |
||
|
Checks for the remote SSH version Detailed Explanation for this Vulnerability Assessment Summary : The remote SSH server does not properly log repeated logins attempts Description : The remote host is running SSH Communications Security SSH 1.2.30 or older. The remote version of this software does not log repeated login attempts, which could permit remote attackers to compromise accounts without detection via a brute force attack. Solution : Upgrade the remote SSH server to the newest version available from SSH.com Network Security Threat Level: Low / CVSS Base Score : 1 (AV:R/AC:H/Au:R/C:P/A:N/I:N/B:N) Networks Security ID: 2345 Vulnerability Assessment Copyright: This script is Copyright (C) 2003 Xue Yong Zhi |
||
|
Switches |
|
||
|
No Discussions have been posted on this vulnerability. |