Vulnerabilities > CVE-2004-1357 - Unspecified vulnerability in SUN Solaris 9.0

047910
CVSS 5.0 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
PARTIAL
Availability impact
NONE
network
low complexity
sun

Summary

The Secure Shell (SSH) Daemon (SSHD) in Sun Solaris 9 does not properly log IP addresses when SSHD is configured with the ListenAddress as 0.0.0.0, which makes it easier for remote attackers to hide the source of their activities.

Vulnerable Configurations

Part Description Count
OS
Sun
2

Oval

accepted2005-10-12T05:49:00.000-04:00
classvulnerability
contributors
nameBrian Soby
organizationThe MITRE Corporation
descriptionThe Secure Shell (SSH) Daemon (SSHD) in Sun Solaris 9 does not properly log IP addresses when SSHD is configured with the ListenAddress as 0.0.0.0, which makes it easier for remote attackers to hide the source of their activities.
familyunix
idoval:org.mitre.oval:def:3505
statusaccepted
submitted2005-04-13T04:00:00.000-04:00
titlesshd Log Bypass Vulnerability
version36