Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2001-1474

SSH before 2.0 disables host key checking when connecting to the localhost, which allows remote attackers to silently redirect connections to the localhost by poisoning the client's DNS cache.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.008
EPSS Ranking 73.5%
CVSS Severity
CVSS v2 Score 5.0
Products affected by CVE-2001-1474
  • Ssh » Ssh » Version: 1.2.24
    cpe:2.3:a:ssh:ssh:1.2.24
  • Ssh » Ssh » Version: 1.2.25
    cpe:2.3:a:ssh:ssh:1.2.25
  • Ssh » Ssh » Version: 1.2.26
    cpe:2.3:a:ssh:ssh:1.2.26
  • Ssh » Ssh » Version: 1.2.27
    cpe:2.3:a:ssh:ssh:1.2.27
  • Ssh » Ssh » Version: 1.2.28
    cpe:2.3:a:ssh:ssh:1.2.28
  • Ssh » Ssh » Version: 1.2.29
    cpe:2.3:a:ssh:ssh:1.2.29
  • Ssh » Ssh » Version: 1.2.30
    cpe:2.3:a:ssh:ssh:1.2.30
  • Ssh » Ssh » Version: 1.2.31
    cpe:2.3:a:ssh:ssh:1.2.31


Contact Us

Shodan ® - All rights reserved