# CVE-2003-0047

## Summary

- **CVE ID:** CVE-2003-0047
- **Severity:** UNKNOWN
- **CVSS Score:** 0
- **CWE:** N/A
- **Published:** Feb 1, 2003
- **Last Modified:** Mar 16, 2026

## Description

SSH2 clients for VanDyke (1) SecureCRT 4.0.2 and 3.4.7, (2) SecureFX 2.1.2 and 2.0.4, and (3) Entunnel 1.0.2 and earlier, do not clear logon credentials from memory, including plaintext passwords, which could allow attackers with access to memory to steal the SSH credentials.

## Affected Products

- n/a — n/a (n/a)

## References

- [CNA](http://marc.info/?l=bugtraq&m=104386492422014&w=2)
- [CNA](http://www.securityfocus.com/bid/6727)
- [CNA](http://www.securityfocus.com/bid/6728)
- [CNA](http://www.securitytracker.com/id?1006011)
- [CNA](http://www.securitytracker.com/id?1006010)
- [CNA](http://www.securitytracker.com/id?1006012)
- [CNA](http://www.idefense.com/advisory/01.28.03.txt)
- [CNA](http://www.securityfocus.com/bid/6726)

## Exploitation Prediction (EPSS)

- **EPSS Score:** 0.08%
- **EPSS Percentile:** 23.8

---
_Exported from OnDuty AI Vulnerability Intelligence on 2026-09-18._