CVE-2005-2771: Critical severity F-Secure F-Secure SSH Server vulnerability
WRQ Reflection for Secure IT Windows Server 6.0 (formerly known as F-Secure SSH server) processes access and deny lists in a case-sensitive manner, when previous versions were case-insensitive, which might allow remote attackers to bypass intended restrictions and login to accounts that should be denied.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2005-2771?
CVE-2005-2771 is classified as a medium severity vulnerability.
How do I fix CVE-2005-2771?
To fix CVE-2005-2771, upgrade to a version of F-Secure SSH Server or WRQ Reflection for Secure IT Windows Server that handles access lists case-sensitively.
Who is affected by CVE-2005-2771?
CVE-2005-2771 affects users of F-Secure SSH Server versions 5.1, 5.2, 5.3 and WRQ Reflection for Secure IT Windows Server version 6.0.
What causes CVE-2005-2771?
CVE-2005-2771 is caused by the case-sensitive handling of access and deny lists in newer software versions.
What are the potential impacts of CVE-2005-2771?
The potential impact of CVE-2005-2771 includes unauthorized access to accounts that should be restricted.