CVE-2001-1474

SSH before 2.0 disables host key checking when connecting to the localhost, which allows remote attackers to silently redirect connections to the localhost by poisoning the client's DNS cache.

Scoring

CVSS base score
0.07
EPSS probability
1.47%
Published
2005-04-21
Last modified
2026-03-16

Affected products

Markdown version · Browse all CVEs