NVD
- Id
- 82362
- Name
- CVE-2016-6210
- Description
- sshd in OpenSSH before 7.3, when SHA256 or SHA512 are used for user password hashing, uses BLOWFISH hashing on a static password when the username does not exist, which allows remote attackers to enumerate users by leveraging the timing difference between responses when a large password is provided.
- Reject
- CVSS Version
- CVSS Score
- Severity
- CVSS Base Score
- CVSS Impact Subscore
- CVSS Exploit Subscore
- CVSS Vector
- Pub Date
- 2017-02-15
- Published
- 2017-02-13
- Modified Date
- 2017-02-14
- Seq
- 2016-6210