CVE Vulnerabilities

CVE-2006-0225

Published: Jan 25, 2006 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4.6 MEDIUM
AV:L/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

scp in OpenSSH 4.2p1 allows attackers to execute arbitrary commands via filenames that contain shell metacharacters or spaces, which are expanded twice.

Affected Software

NameVendorStart VersionEnd Version
OpensshOpenbsd3.0 (including)3.0 (including)
OpensshOpenbsd3.0.1 (including)3.0.1 (including)
OpensshOpenbsd3.0.1p1 (including)3.0.1p1 (including)
OpensshOpenbsd3.0.2 (including)3.0.2 (including)
OpensshOpenbsd3.0.2p1 (including)3.0.2p1 (including)
OpensshOpenbsd3.0p1 (including)3.0p1 (including)
OpensshOpenbsd3.1 (including)3.1 (including)
OpensshOpenbsd3.1p1 (including)3.1p1 (including)
OpensshOpenbsd3.2 (including)3.2 (including)
OpensshOpenbsd3.2.2p1 (including)3.2.2p1 (including)
OpensshOpenbsd3.2.3p1 (including)3.2.3p1 (including)
OpensshOpenbsd3.3 (including)3.3 (including)
OpensshOpenbsd3.3p1 (including)3.3p1 (including)
OpensshOpenbsd3.4 (including)3.4 (including)
OpensshOpenbsd3.4p1 (including)3.4p1 (including)
OpensshOpenbsd3.5 (including)3.5 (including)
OpensshOpenbsd3.5p1 (including)3.5p1 (including)
OpensshOpenbsd3.6 (including)3.6 (including)
OpensshOpenbsd3.6.1 (including)3.6.1 (including)
OpensshOpenbsd3.6.1p1 (including)3.6.1p1 (including)
OpensshOpenbsd3.6.1p2 (including)3.6.1p2 (including)
OpensshOpenbsd3.7 (including)3.7 (including)
OpensshOpenbsd3.7.1 (including)3.7.1 (including)
OpensshOpenbsd3.7.1p2 (including)3.7.1p2 (including)
OpensshOpenbsd3.8 (including)3.8 (including)
OpensshOpenbsd3.8.1 (including)3.8.1 (including)
OpensshOpenbsd3.8.1p1 (including)3.8.1p1 (including)
OpensshOpenbsd3.9 (including)3.9 (including)
OpensshOpenbsd3.9.1 (including)3.9.1 (including)
OpensshOpenbsd3.9.1p1 (including)3.9.1p1 (including)
OpensshOpenbsd4.0p1 (including)4.0p1 (including)
OpensshOpenbsd4.1p1 (including)4.1p1 (including)
OpensshOpenbsd4.2p1 (including)4.2p1 (including)
Red Hat Enterprise Linux 2.1RedHatopenssh-0:3.1p1-21*
Red Hat Enterprise Linux 3RedHatopenssh-0:3.6.1p2-33.30.9*
Red Hat Enterprise Linux 4RedHatopenssh-0:3.9p1-8.RHEL4.12*
DropbearUbuntudapper*
DropbearUbuntudevel*
DropbearUbuntuedgy*
DropbearUbuntufeisty*
OpensshUbuntudapper*
OpensshUbuntudevel*
OpensshUbuntuedgy*
OpensshUbuntufeisty*

References