Tagged: CVE-2016-6210: OpenSSH – user enumeration

CVE-2016-6210: OpenSSH – user enumeration

1.Sphere of influence OpenSSH <=OpenSSH 7.2p2 2.Descriptions of the vulnerability When we use the user name does not exist to connect ssh server, SSHD will be based BLOWFISH algorithm to generate a fake password,...