VYPR
Medium severity5.3OSV Advisory· Published Jan 10, 2019· Updated Jun 17, 2026

CVE-2018-20685

CVE-2018-20685

Description

In OpenSSH 7.9, scp.c in the scp client allows remote SSH servers to bypass intended access restrictions via the filename of . or an empty filename. The impact is modifying the permissions of the target directory on the client side.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

39

Patches

Vulnerability mechanics

References

14

News mentions

0

No linked articles in our index yet.