CVE-2001-0156: Low severity van dyke technologies vshell vulnerability
VShell SSH gateway 1.0.1 and earlier has a default port forwarding rule of 0.0.0.0/0.0.0.0, which could allow local users to conduct arbitrary port forwarding to other systems.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2001-0156?
CVE-2001-0156 is considered a high severity vulnerability due to its potential for unauthorized access through arbitrary port forwarding.
How do I fix CVE-2001-0156?
To fix CVE-2001-0156, update VShell to version 1.0.2 or later which addresses the default port forwarding rule issue.
Who is affected by CVE-2001-0156?
CVE-2001-0156 affects users of VShell SSH gateway version 1.0.1 and earlier.
What type of vulnerability is CVE-2001-0156?
CVE-2001-0156 is classified as a security vulnerability that allows for unauthorized network traffic rerouting by local users.
Can local users exploit CVE-2001-0156?
Yes, local users can exploit CVE-2001-0156 to conduct arbitrary port forwarding to other systems, posing a significant security risk.