CVE-2012-6066
50Vexday Risk Score
Patch soon. It has a working public exploit.
ssvc Attendepss 40%
from disclosure to weapon0 days
Published on NVDDec 4
1st PoCDec 2
metasploitAug 11
exploitation probability
40%top 2% of all CVEs
observed exploitation
nono source reports it
4 public exploit(s)
freeSSHd.exe in freeSSHd through 1.2.6 allows remote attackers to bypass authentication via a crafted session, as demonstrated by an OpenSSH client with modified versions of ssh.c and sshconnect2.c.
Affected products
n/a · n/apublic PoCs found — 4
githubgithub.com/bongbongco/CVE-2012-6066★ 0exploitdbwww.exploit-db.com/exploits/23079unverifiedexploitdbwww.exploit-db.com/exploits/24133unverifiedexploitdbwww.exploit-db.com/exploits/23080unverified⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.