SSH daemon version 1 (aka SSHD-1 or SSH-1) 1.2.30 and earlier does not log repeated login attempts, which could allow remote attackers to compromise accounts without detection via a brute force attack.
Link | Tags |
---|---|
http://www.securityfocus.com/bid/2345 | patch vendor advisory vdb entry exploit |
http://www.securityfocus.com/archive/1/160648 | patch vendor advisory mailing list exploit |