CVE-2005-2797 describes a vulnerability in OpenSSH versions prior to 4.2, including OpenSSH 4.0, where improper handling of dynamic port forwarding without a specified listen address can inadvertently enable the GatewayPorts functionality. This vulnerability carries a CVSS score of 5.0, indicating a medium severity issue with a network attack vector, low attack complexity, and a potential impact on integrity, allowing an attacker to potentially bypass intended network restrictions. Despite its age, there is no evidence of active exploitation, public exploit code (Metasploit, Nuclei, ExploitDB), or significant community discussion or media coverage surrounding this CVE.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
4.0CPE matchmatch criteria | cpe:2.3:a:openbsd:openssh:4.0:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:L/Au:N/C:N/I:P/A:N
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.