Tectia Server

Vendor:

First CVE: Dec 31, 2003 · Active for 22 years

13
Total CVEs
More Total CVEs than 91% of tracked products
1.6
Avg CVEs / Year
Higher CVE frequency than 59% of tracked products
6.4
Avg CVSS
Higher Avg CVSS than 28% of tracked products
0.0%
KEV Rate
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact Tectia Server over time

Volume of CVEsAvg CVSS Base Score
First CVE
Dec 31, 2003
22 years ago
Most Recent CVE
Oct 2, 2025
295 days ago

CVE Severity & Scoring

Tectia Server13 CVEs
All CVEs352,294 CVEs
LowMediumHigh
Attack Vector
Local2 (15.4%)
Network3 (23.1%)
Unknown8 (61.5%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low2 (15.4%)
High3 (23.1%)
Unknown8 (61.5%)
User Interaction
None5 (38.5%)
Unknown8 (61.5%)
Required0 (0.0%)
Privileges Required
Low3 (23.1%)
High1 (7.7%)
None1 (7.7%)
Unknown8 (61.5%)

Top CVEs

Signals from CVEs in this product scope (13 CVEs).

13 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
The SSH USERAUTH CHANGE REQUEST feature in SSH Tectia Server 6.0.4 through 6.0.20, 6.1.0 through 6.1.12, 6.2.0 through 6.2.5, and 6.3.0 through 6.3.2 on UNIX and Linux, when old-st
Dec 4, 20129.367NOYES
Error handling in the SSH protocol in (1) SSH Tectia Client and Server and Connector 4.0 through 4.4.11, 5.0 through 5.2.4, and 5.3 through 5.3.8; Client and Server and ConnectSecu
Nov 19, 20083.732NOYES
SSH Tectia Client and Server before 6.4.19 on Windows have weak key generation. ConnectSecure on Windows is affected.
Mar 15, 20218.827NONO
SSH Tectia Server before 6.6.6 sometimes allows attackers to read and alter a user's session traffic.
Oct 2, 20257.224NONO
SSH Tectia Client and Server before 6.4.19 on Windows allow local privilege escalation. ConnectSecure on Windows is affected.
Mar 15, 20217.824NONO
SSH Tectia Client and Server before 6.4.19 on Windows allow local privilege escalation in nonstandard conditions. ConnectSecure on Windows is affected.
Mar 15, 20217.023NONO
ssh-signer in SSH Tectia Client and Server 5.x before 5.2.4, and 5.3.x before 5.3.6, on Unix and Linux allows local users to gain privileges via unspecified vectors.
Jan 9, 20087.222NONO
SSH Tectia Server 5.0.0 (A, F, and T), when allowing host-based authentication only, allows users to log in with the wrong credentials.
Dec 17, 20057.519NONO
Unquoted Windows search path vulnerability in multiple SSH Tectia products, including Client/Server/Connector 5.0.0 and 5.0.1 and Client/Server before 4.4.5, and Manager 2.12 and e
Aug 23, 20067.218NONO
SSH Tectia Client/Server/Connector 5.1.0 and earlier, Manager 2.2.0 and earlier, and other products, when using an RSA key with exponent 3, removes PKCS-1 padding before generating
Oct 24, 20065.015NONO

Exploit Exposure

Signals from CVEs in this product scope (13 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
2 CVEs
15.4% of CVEs· 97th percentile
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
1 CVE
7.7% of CVEs· 88th percentile

Social Chatter

Signals from CVEs in this product scope (13 CVEs).

Media Mentions

Signals from CVEs in this product scope (13 CVEs).

Top CNAs Publishing CVEs For Tectia Server

Top CWEs

Versions

VersionCVE CountAvg CVSSAvg EPSSKEVExploits
6.3.219.335.9%01
6.3.119.335.9%01
6.3.019.335.9%01
6.2.519.335.9%01
6.2.419.335.9%01
6.2.319.335.9%01
6.2.219.335.9%01
6.2.119.335.9%01
6.2.019.335.9%01
6.1.919.335.9%01
6.1.819.335.9%01
6.1.719.335.9%01
6.1.619.335.9%01
6.1.519.335.9%01
6.1.419.335.9%01
6.1.319.335.9%01
6.1.219.335.9%01
6.1.1219.335.9%01
6.1.119.335.9%01
6.1.019.335.9%01