peter bassill · operator
$ cve CVE-2018-15473 JSON

CVE-2018-15473 EXPLOIT

5.3
MEDIUM · CVSS 3.1 · EPSS 98.6% (pctl 100)

Patch early

A public exploit exists.

Description

OpenSSH through 7.7 is prone to a user enumeration vulnerability due to not delaying bailout for an invalid authenticating user until after the packet containing the request has been fully parsed, related to auth2-gss.c, auth2-hostbased.c, and auth2-pubkey.c.

Scoring

CVSS5.3 (MEDIUM, v3.1)
VectorCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
EPSS98.63% — more likely to be exploited than 100% of all CVEs
WeaknessCWE-362
On CISA KEVno
Public exploityes
Published2018-08-17
Last modified2026-06-17

Affected (24)

VendorProduct
canonicalubuntu linux
debiandebian linux
netappaff baseboard management controller
netappcloud backup
netappclustered data ontap
netappcn1610
netappcn1610 firmware
netappdata ontap
netappdata ontap edge
netappfas baseboard management controller
netapponcommand unified manager
netappontap select deploy
netappservice processor
netappsteelstore cloud integrated storage
netappstorage replication adapter
netappvasa provider
netappvirtual storage console
openbsdopenssh
oraclesun zfs storage appliance kit
redhatenterprise linux desktop
redhatenterprise linux server
redhatenterprise linux workstation
siemensscalance x204rna
siemensscalance x204rna firmware

Public exploits

References

→ the Explorer  ·  watch your stack  ·  NVD