Vulnerabilities > Openbsd > Openssh > High

DATE CVE VULNERABILITY TITLE RISK
2001-06-19 CVE-2001-1459 Unspecified vulnerability in Openbsd Openssh
OpenSSH 2.9 and earlier does not initiate a Pluggable Authentication Module (PAM) session if commands are executed with no pty, which allows local users to bypass resource limits (rlimits) set in pam.d.
network
low complexity
openbsd
7.5
2001-01-09 CVE-2000-1169 Unspecified vulnerability in Openbsd Openssh 2.2
OpenSSH SSH client before 2.3.0 does not properly disable X11 or agent forwarding, which could allow a malicious SSH server to gain access to the X11 display and sniff X11 events, or gain access to the ssh-agent.
network
low complexity
openbsd
7.5