CVE-2000-0992Directory traversal vulnerability in scp in sshd 1.2.xx allows a remote malicious scp server to overwrite arbitrary files via a .. (dot dot) attack.
Working exploit published
A reviewed exploit catalogue carries this CVE. Somebody has published code a stranger can run.
CVSS E:P
| Index | Artifact | Stars | First seen |
|---|---|---|---|
| Exploit-DB | OpenSSH 1.2 - '.scp' File Create/Overwrite | 2000-09-30 |
Not a Java vulnerability. Outside ARMR's domain entirely.
| Decided by | unmatched-product : No tracked product matched above, and none present at all |
|---|---|
| Finding | Affected products (openbsd/openssh, ssh/ssh) are not in our known products list |
AV:N/AC:L/Au:N/C:N/I:P/A:N
1 metric
VRT selects the newest version's highest entry and
publishes it as cvssScore, newest rather than largest because scores are not comparable
across versions, and highest rather than first because the first entry is frequently a CNA placeholder
scoring 0.0 over NVD's own analysis.
| Version | Score | Band | Vector | Assigner | Type | |
|---|---|---|---|---|---|---|
| CVSS 2.0 | 5.0 | no band published | AV:N/AC:L/Au:N/C:N/I:P/A:N |
NVD | Primary | published |
| Source | Vendor | Product | Scheme | Affected Versions |
|---|---|---|---|---|
| nvd | openbsd | openssh | generic | 1.2 · 1.2.3 |
| nvd | ssh | ssh | generic | 1.2.14 · 1.2.15 · 1.2.16 · 1.2.17 · 1.2.18 · 1.2.19 · 1.2.20 · 1.2.21 · 1.2.22 · 1.2.23 · 1.2.24 · 1.2.25 · 1.2.26 · 1.2.27 · 1.2.28 · 1.2.29 · 1.2.30 · 1.2.31 |
| URL | Tags |
|---|---|
| http://archives.neohapsis.com/archives/bugtraq/2000-09/0359.html | Exploit, Vendor Advisory |
| http://frontal2.mandriva.com/security/advisories?name=MDKSA-2000:057 | |
| http://www.securityfocus.com/bid/1742 | Exploit, Patch, Vendor Advisory |
| https://exchange.xforce.ibmcloud.com/vulnerabilities/5312 |
| Published | 2000-12-19 | By the CVE Program. |
|---|---|---|
| NVD record modified | 2026-06-16 | NVD's own last-modified date for this record. |