Description
An issue in Eugeny Tabby 1.0.213 allows a remote attacker to obtain sensitive information via the server and sends the SSH username and password even when the host key verification fails.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
Github GHSA |
GHSA-8vq4-8hfp-29xh | Eugeny Tabby Sends Password Despite Host Key Verification Failure |
References
| Link | Providers |
|---|---|
| https://github.com/Eugeny/tabby/issues/9955 |
|
History
Mon, 03 Feb 2025 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-295 | |
| Metrics |
cvssV3_1
|
Thu, 16 Jan 2025 22:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | An issue in Eugeny Tabby 1.0.213 allows a remote attacker to obtain sensitive information via the server and sends the SSH username and password even when the host key verification fails. | |
| References |
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-02-03T20:13:41.729Z
Reserved: 2024-10-08T00:00:00.000Z
Link: CVE-2024-48460
Updated: 2025-01-17T13:53:51.664Z
Status : Awaiting Analysis
Published: 2025-01-16T22:15:39.973
Modified: 2025-02-03T21:15:13.217
Link: CVE-2024-48460
No data.
OpenCVE Enrichment
No data.
Weaknesses
Github GHSA