Vulnerability Details
Basic Information
| Title | Exploit for Unquoted Search Path or Element in Openbsd Openssh |
|---|---|
| Type | githubexploit |
| Published | 2025-04-19T20:09:15 |
| Last Seen | 2025-04-20T00:05:10 |
| CVSS Score | 9.8 (CRITICAL) |
CVSS v3 Details
| Attack Vector | NETWORK |
|---|---|
| Attack Complexity | LOW |
| Privileges Required | NONE |
| User Interaction | NONE |
| Scope | UNCHANGED |
| Confidentiality Impact | HIGH |
| Integrity Impact | HIGH |
| Availability Impact | HIGH |
CVE Information
| CVE IDs | CVE-2023-38408 |
|---|---|
| CWE | |
| Bulletin Family | exploit |
Description
OpenSSH Vulnerability – CVE-2023-38408 :books: ### Introduction A vulnerability was found in OpenSSH (before 9.3p2 version). The PKCS#11 feature in the ssh-agent in OpenSSH has an insufficiently trustworthy search path, leading to remote code execution…
Impact Assessment
| Base Score | 9.8 |
|---|---|
| Severity | CRITICAL |