CVE-2019-6110
ADVISORY - nistSummary
In OpenSSH 7.9, due to accepting and displaying arbitrary stderr output from the server, a malicious server (or Man-in-The-Middle attacker) can manipulate the client output, for example to use ANSI control codes to hide additional files being transferred.
EPSS Score: 0.00418 (0.746)
Common Weakness Enumeration (CWE)
ADVISORY - nist
Inappropriate Encoding for Output Context
ADVISORY - redhat
User Interface (UI) Misrepresentation of Critical Information
NIST
CREATED
UPDATED
ADVISORY IDCVE-2019-6110
EXPLOITABILITY SCORE
1.6
EXPLOITS FOUND
COMMON WEAKNESS ENUMERATION (CWE)
Debian
CREATED
UPDATED
ADVISORY IDCVE-2019-6110
EXPLOITABILITY SCORE
-
EXPLOITS FOUND
-
COMMON WEAKNESS ENUMERATION (CWE)-
Ubuntu
CREATED
UPDATED
ADVISORY IDCVE-2019-6110
EXPLOITABILITY SCORE
1.6
EXPLOITS FOUND
-
COMMON WEAKNESS ENUMERATION (CWE)-
Red Hat
CREATED
UPDATED
ADVISORY IDCVE-2019-6110
EXPLOITABILITY SCORE
1.6
EXPLOITS FOUND
-
COMMON WEAKNESS ENUMERATION (CWE)
SUSE
CREATED
UPDATED
ADVISORY IDCVE-2019-6110
EXPLOITABILITY SCORE
2.1
EXPLOITS FOUND
-
COMMON WEAKNESS ENUMERATION (CWE)-
intheWild
CREATED
UPDATED
ADVISORY IDCVE-2019-6110
EXPLOITABILITY SCORE
-
EXPLOITS FOUND
-
COMMON WEAKNESS ENUMERATION (CWE)-
vulncheck
CREATED
UPDATED
ADVISORY ID
CVE-2019-6110
EXPLOITABILITY SCORE
-
EXPLOITS FOUND
COMMON WEAKNESS ENUMERATION (CWE)-