VYPR
Unrated severityNVD Advisory· Published Dec 19, 2000· Updated Apr 16, 2026

CVE-2000-0992

CVE-2000-0992

Description

Directory traversal vulnerability in scp in sshd 1.2.xx allows a remote malicious scp server to overwrite arbitrary files via a .. (dot dot) attack.

Affected products

20
  • OpenBSD/OpenSSH2 versions
    cpe:2.3:a:openbsd:openssh:1.2:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:openbsd:openssh:1.2:*:*:*:*:*:*:*
    • cpe:2.3:a:openbsd:openssh:1.2.3:*:*:*:*:*:*:*
  • SSH/SSH18 versions
    cpe:2.3:a:ssh:ssh:1.2.14:*:*:*:*:*:*:*+ 17 more
    • cpe:2.3:a:ssh:ssh:1.2.14:*:*:*:*:*:*:*
    • cpe:2.3:a:ssh:ssh:1.2.15:*:*:*:*:*:*:*
    • cpe:2.3:a:ssh:ssh:1.2.16:*:*:*:*:*:*:*
    • cpe:2.3:a:ssh:ssh:1.2.17:*:*:*:*:*:*:*
    • cpe:2.3:a:ssh:ssh:1.2.18:*:*:*:*:*:*:*
    • cpe:2.3:a:ssh:ssh:1.2.19:*:*:*:*:*:*:*
    • cpe:2.3:a:ssh:ssh:1.2.20:*:*:*:*:*:*:*
    • cpe:2.3:a:ssh:ssh:1.2.21:*:*:*:*:*:*:*
    • cpe:2.3:a:ssh:ssh:1.2.22:*:*:*:*:*:*:*
    • cpe:2.3:a:ssh:ssh:1.2.23:*:*:*:*:*:*:*
    • cpe:2.3:a:ssh:ssh:1.2.24:*:*:*:*:*:*:*
    • cpe:2.3:a:ssh:ssh:1.2.25:*:*:*:*:*:*:*
    • cpe:2.3:a:ssh:ssh:1.2.26:*:*:*:*:*:*:*
    • cpe:2.3:a:ssh:ssh:1.2.27:*:*:*:*:*:*:*
    • cpe:2.3:a:ssh:ssh:1.2.28:*:*:*:*:*:*:*
    • cpe:2.3:a:ssh:ssh:1.2.29:*:*:*:*:*:*:*
    • cpe:2.3:a:ssh:ssh:1.2.30:*:*:*:*:*:*:*
    • cpe:2.3:a:ssh:ssh:1.2.31:*:*:*:*:*:*:*

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

4

News mentions

0

No linked articles in our index yet.