Security Advisory

CVE-2003-0386

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2003-06-10 04:00:00
Last updated 2024-08-08 01:50:47
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

OpenSSH 3.6.1 and earlier, when restricting host access by numeric IP addresses and with VerifyReverseMapping disabled, allows remote attackers to bypass "from=" and "user@host" address restrictions by connecting to a host from a system whose reverse DNS hostname contains the numeric IP address.