CVE-1999-0398

CVSS 2.0 Score 4.6 of 10 (medium)

Details

Published Jan 1, 1999
Updated: Nov 20, 2024

Summary

CVE-1999-0398 is a vulnerability affecting certain versions of the Secure Shell (SSH) protocol, specifically SSH 1.2.27 and 2.0.11 on Linux systems. This issue allows users with expired accounts to gain unauthorized access through SSH login, posing a significant security risk. The vulnerability arises due to a flaw in the SSH implementation that does not properly check account expiration status during the authentication process. Successful exploitation enables unauthorized users to bypass authentication and access secure systems, potentially leading to data breaches or other malicious activities. It is essential for system administrators to update their SSH implementations to mitigate this vulnerability and secure their systems.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share