AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2007-0844

MEDIUM · CVSS 6.4 EPSS 0.83%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2007-02-08 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2007-0844
Severity
MEDIUM
CVSS
6.4
EPSS
0.83%

Original NVD Description

The auth_via_key function in pam_ssh.c in pam_ssh before 1.92, when the allow_blank_passphrase option is disabled, allows remote attackers to bypass authentication restrictions and use private encryption keys requiring a blank passphrase by entering a non-blank passphrase.