CVE-2016-10009
Untrusted search path vulnerability in ssh-agent.c in ssh-agent in OpenSSH before 7.4 allows remote attackers to execute
Untrusted search path vulnerability in ssh-agent.c in ssh-agent in OpenSSH before 7.4 allows remote attackers to execute arbitrary local PKCS#11 modules by leveraging control over a forwarded agent-socket.
HIGH · CVSS 7.3
EPSS 0.01579
Act now
- Public exploit or PoC is available
- CVSS base score ≥ 7.0
Sigma rules2
YARA rules0