CVE-2001-0553
23Vexday Risk Score
No sign of exploitation. It has a public proof of concept.
ssvc Attendepss 1.3%
from disclosure to weapon0 days
Published on NVDJun 25
1st PoCJul 21
exploitation probability
1.3%top 32% of all CVEs
observed exploitation
nono source reports it
1 public exploit(s)
SSH Secure Shell 3.0.0 on Unix systems does not properly perform password authentication to the sshd2 daemon, which allows local users to gain access to accounts with short password fields, such as locked accounts that use "NP" in the password field.
Affected products
n/a · n/apublic PoCs found — 1✓ VexDay Proof
exploitdb✓ VexDay Proofwww.exploit-db.com/exploits/21021⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.
References
http://archives.neohapsis.com/archives/bugtraq/2001-07/0486.htmlhttps://exchange.xforce.ibmcloud.com/vulnerabilities/6868http://www.ciac.org/ciac/bulletins/l-121.shtmlhttp://www.kb.cert.org/vuls/id/737451http://www.osvdb.org/586http://www.securityfocus.com/bid/3078http://www.ssh.com/products/ssh/exploit.cfm