Back to Database
Status published
High
CVE-2001-1475
SSH before 2.0, when using RC4 and password authentication, allows...
Vulnerability Description
SSH before 2.0, when using RC4 and password authentication, allows remote attackers to replay messages until a new server key (VK) is generated.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2001-1475
Credits & Attribution
No credits recorded in the NVD database.
References
More from ssh
View All →CVE-2021-27893
SSH Tectia Client and Server before 6.4.19 on Windows allow...
High
7
CVE-2021-27892
SSH Tectia Client and Server before 6.4.19 on Windows allow...
High
7.8
CVE-2021-27891
SSH Tectia Client and Server before 6.4.19 on Windows have...
High
8.8
CVE-2012-5975
The SSH USERAUTH CHANGE REQUEST feature in SSH Tectia Server...
Critical
9.3
CVE-2007-5616
ssh-signer in SSH Tectia Client and Server 5.x before 5.2.4,...
High
7.2
Affected Vendor
Affected Software
ssh
Vulnerable Versions:
1.2.24, 1.2.25, 1.2.26, 1.2.27, 1.2.28, 1.2.29, 1.2.30, 1.2.31
Timeline
Official Publish:
April 21st, 2005
Last Modified:
August 8th, 2024
Added to House:
July 18th, 2026
CVSS Vectors
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.