216.73.216.197

CVE-2024-47857

· Published 31/01/2025 17:15 · Modified 18/02/2025 19:15

Labels: CVE-2024-47857 2025-01-31CVE-2024-47857CWE-863[email protected]

Essential information

Published
31/01/2025 17:15
Modified
18/02/2025 19:15
Author
Creator
CISA KEV
No
CWE

Description

SSH Communication Security PrivX versions between 18.0-36.0 implement insufficient validation on public key signatures when using native SSH connections via a proxy port. This allows an existing PrivX "account A" to impersonate another existing PrivX "account B" and gain access to SSH target hosts to which the "account B" has access.

NVD status

Status
Awaiting Analysis — CVE has been recently published to the CVE List and has been received by the NVD.
Source
[email protected]
NVD
View on NVD

References