CVE-2016-6210


Severity : MEDIUM
Published : 2017-02-13
Modified : 2018-01-04
Base Score : 4.3
Details : sshd in OpenSSH before 7.3, when SHA256 or SHA512 are used for user password hashing, uses BLOWFISH hashing on a static password when the username does not exist, which allows remote attackers to enumerate users by leveraging the timing difference between responses when a large password is provided.
Product/Version : Pro 5.0  
Carrier Grade CGE 7.0  
CGX 2.0 unspecified  
CGE 5.x  
Mobilinux 5.x  
Carrier Grade CGE 5.1  
Carrier Grade CGE 6.0  
 
 
 

CVE Vulnerabilities List CVE-2016

CVE-2016-0704 CVE-2016-0772 CVE-2016-0797 CVE-2016-0799
CVE-2016-0800 CVE-2016-1839 CVE-2016-2073 CVE-2016-2105
CVE-2016-2106 CVE-2016-2108 CVE-2016-2182 CVE-2016-2183
CVE-2016-3115 CVE-2016-3841 CVE-2016-3951 CVE-2016-4483
CVE-2016-5387 CVE-2016-6210 CVE-2016-6304 CVE-2016-6515
CVE-2016-9310 CVE-2016-9311