Format string vulnerability in the log function in Georgia SoftWorks SSH2 Server (GSW_SSHD) 7.01.0003 and earlier allows remote attackers to execute arbitrary code via format string specifiers in the username field, as demonstrated by a certain LoginPassword message.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2008-01-08T02:00:00

Updated: 2024-08-07T07:32:24.020Z

Reserved: 2008-01-07T00:00:00

Link: CVE-2008-0097

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2008-01-08T02:46:00.000

Modified: 2024-11-21T00:41:09.893

Link: CVE-2008-0097

cve-icon Redhat

No data.