CVE-2012-6066: Freesshd
High severity, CVSS 9.3. EPSS: 39.5% chance of exploitation in the next 30 days.
freeSSHd.exe in freeSSHd through 1.2.6 allows remote attackers to bypass authentication via a crafted session, as demonstrated by an OpenSSH client with modified versions of ssh.c and sshconnect2.c.
Affected products
- Freesshd Freesshd: up to and including 1.2.6; version 1.2.1 only; version 1.2.2 only
Published 2012-12-04. Last modified 2026-06-16.