← All CVEs

CVE-2008-4726

high · 9

Stack-based buffer overflow in the SFTP subsystem in GoodTech SSH 6.4 allows remote authenticated users to execute arbitrary code via a long string to the (1) open (aka SSH_FXP_OPEN), (2) unlink, (3) opendir, and other unspecified parameters.

9
CVSS
44.3%
EPSS (exploit prob.)
99th
EPSS percentile
2008-10-24
Published

AV:N/AC:L/Au:S/C:C/I:C/A:C

Weaknesses

CWE-119

Affected products

VendorProductAffected versions
goodtechsystemsgoodtech_ssh6.4

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2008-4726