VYPR

Xshell

by Netsarang

CVEs (5)

  • CVE-2017-20203CriOct 9, 2025
    risk 0.60cvss epss 0.01

    NetSarang Xmanager Enterprise 5.0 Build 1232, Xmanager 5.0 Build 1045, Xshell 5.0 Build 1322, Xftp 5.0 Build 1218, and Xlpd 5.0 Build 1220 contain a malicious nssock2.dll that implements a multi-stage, DNS-based backdoor. The dormant library contacts a C2 DNS server via a…

  • CVE-2021-42095HigOct 7, 2021
    risk 0.49cvss 7.5epss 0.01

    Xshell before 7.0.0.76 allows attackers to cause a crash by triggering rapid changes to the title bar.

  • CVE-2022-27966MedMar 31, 2022
    risk 0.42cvss 6.5epss 0.00

    Xshell v7.0.0099 and below contains a binary hijack vulnerability which allows attackers to execute arbitrary code via a crafted .exe file.

  • CVE-2023-48795MedDec 18, 2023
    risk 0.39cvss 5.9epss 0.93

    The SSH transport protocol with certain OpenSSH extensions, found in OpenSSH before 9.6 and other products, allows remote attackers to bypass integrity checks such that some packets are omitted (from the extension negotiation message), and a client and server may consequently…

  • CVE-2021-37326MedAug 15, 2021
    risk 0.35cvss 5.3epss 0.01

    NetSarang Xshell 7 before Build 0077 includes unintended code strings in paste operations.