CyberRota Analysis
AI-GeneratedA vulnerability in libssh allows a malicious username to exploit the ProxyCommand handling by injecting shell metacharacters, which can lead to the exposure of environment variables and unintended shell behavior. While the severity is rated low, it poses a risk for systems utilizing libssh for proxy connections. Organizations that rely on libssh for secure communications should prioritize patching this vulnerability to mitigate potential exploitation.
Original NVD Description
A flaw was found in libssh. A malicious username expanded through %r in ProxyCommand handling can inject shell metacharacters, exposing environment variables and causing unintended shell behavior.
Related CVEs
Other vulnerabilities affecting the same vendor(s)