CVE Database
/

CVE-2008-0097

Back to search

CVE-2008-0097

Published: Jan 8, 2008

Modified: Aug 7, 2024

PUBLISHED

Description

Format string vulnerability in the log function in Georgia SoftWorks SSH2 Server (GSW_SSHD) 7.01.0003 and earlier allows remote attackers to execute arbitrary code via format string specifiers in the username field, as demonstrated by a certain LoginPassword message.

VendorProductVersions

n/a

n/a

affected
n/a

References

3517
third-party-advisory
x_refsource_SREASON
28307
third-party-advisory
x_refsource_SECUNIA

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now