CVE-2018-9853: Freesshd

Critical severity, CVSS 9.8. EPSS: 1.3% chance of exploitation in the next 30 days.

Insecure access control in freeSSHd version 1.3.1 allows attackers to obtain the privileges of the freesshd.exe process by leveraging the ability to login to an unprivileged account on the server.

Affected products

Published 2018-07-10. Last modified 2026-06-17.