vulnerability

FreeBSD: VID-0e8f496a-b498-11e8-bdcf-74d435e60b7c: py-asyncssh -- Allows bypass of authentication

Severity
10
CVSS
(AV:N/AC:L/Au:N/C:C/I:C/A:C)
Published
Dec 8, 2018
Added
Dec 9, 2018
Modified
Dec 10, 2025

Description

mitre.org Reports: The SSH server implementation of AsyncSSH before 1.12.1 does not properly check whether authentication is completed before processing other requests A customized SSH client can simply skip the authentication step.

Solution

freebsd-upgrade-package-py-asyncssh

References

Title
Rapid7 Labs

2026 Global Threat Landscape Report

The predictive window has collapsed. Exploitation follows disclosure in days. See how attackers are accelerating and how to stay ahead.