libssh 0.8.1 - CVE 2018-10933
Theory
Description
In late 2018, a critical vulnerability was uncovered in the libssh server code. A vulnerability within the server code can enable a client to bypass the authentication process and set the internal state machine maintained by the library to authenticate, enabling the (otherwise prohibited) creation of channels.
Read More: https://www.libssh.org/security/advisories/CVE-2018-10933.txt
Practical
Metasploit
FOR FURTHER READING
Last updated