CVE-2003-0386
OpenSSH 3.6.1 and earlier, when restricting host access by numeric IP addresses and with VerifyReverseMapping disabled, allows remote attackers to bypass "from=" and "user@host" address restrictions by connecting to a host from a system whose reverse DNS hostname contains the numeric IP address.
Scoring
- CVSS base score
- 0.39
- EPSS probability
- 9.64%
- Published
- 2003-06-10
- Last modified
- 2026-03-16
Affected products
- n/a n/a