Vulnerability Details CVE-2019-9896
In PuTTY versions before 0.71 on Windows, local attackers could hijack the application by putting a malicious help file in the same directory as the executable.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.023
EPSS Ranking 83.9%
CVSS Severity
CVSS v3 Score 7.8
CVSS v2 Score 4.6
Products affected by CVE-2019-9896
-
cpe:2.3:a:opensuse:backports_sle:15.0
-
-
cpe:2.3:a:putty:putty:0.45
-
cpe:2.3:a:putty:putty:0.46
-
cpe:2.3:a:putty:putty:0.47
-
cpe:2.3:a:putty:putty:0.48
-
cpe:2.3:a:putty:putty:0.49
-
cpe:2.3:a:putty:putty:0.50
-
cpe:2.3:a:putty:putty:0.51
-
cpe:2.3:a:putty:putty:0.52
-
cpe:2.3:a:putty:putty:0.53
-
cpe:2.3:a:putty:putty:0.53b
-
cpe:2.3:a:putty:putty:0.54
-
cpe:2.3:a:putty:putty:0.55
-
cpe:2.3:a:putty:putty:0.56
-
cpe:2.3:a:putty:putty:0.57
-
cpe:2.3:a:putty:putty:0.58
-
cpe:2.3:a:putty:putty:0.59
-
cpe:2.3:a:putty:putty:0.60
-
cpe:2.3:a:putty:putty:0.61
-
cpe:2.3:a:putty:putty:0.62
-
cpe:2.3:a:putty:putty:0.63
-
cpe:2.3:a:putty:putty:0.65
-
cpe:2.3:a:putty:putty:0.66
-
cpe:2.3:a:putty:putty:0.67
-
cpe:2.3:a:putty:putty:0.68
-
cpe:2.3:a:putty:putty:0.69
-
cpe:2.3:a:putty:putty:0.70
-
cpe:2.3:o:microsoft:windows:-
-
cpe:2.3:o:opensuse:leap:15.0