Wildcard Bypass Vulnerability in OpenSSH

Wildcard Bypass Vulnerability in OpenSSH

CVE-2014-2532 · MEDIUM Severity

AV:N/AC:M/AU:N/C:P/I:P/A:N

sshd in OpenSSH before 6.6 does not properly support wildcards on AcceptEnv lines in sshd_config, which allows remote attackers to bypass intended environment restrictions by using a substring located before a wildcard character.

Learn more about our Web Application Penetration Testing UK.