CNNVD-202602-1678 Information

CNNVD ID

CNNVD-202602-1678

CVE-2025-14821

  • CNNVD Published: 2026-02-10

Description (Chinese)

libssh是libssh组织的一个用于访问SSH服务的C语言开发包,它能够执行远程命令、文件传输,同时为远程的程序提供安全的传输通道。 libssh存在安全漏洞,该漏洞源于Windows系统上不安全的默认配置,可能导致本地中间人攻击、SSH连接安全降级和受信任主机信息被操纵。

Description (English)

Libssh, a C-language development package for access to SSH services organized by Libssh, is capable of carrying out remote commands, file transfers and, at the same time, providing secure transmission channels for remote programs. There is a security loophole in libssh, which stems from unsafe default configurations on Windows, which may lead to attacks by local intermediaries, downgrading of SSH connections and manipulation of trusted mainframe information.

Vulnerability Type

其他

Affected Vendor

libssh

Published

2026-02-10

Last Modified

2026-02-24

References

https://access.redhat.com/security/cve/cve-2025-14821

Share on: