
Cloud Vulnerability DB
A community-led vulnerabilities database
OpenSSH vulnerability (CVE-2022-39894) is a security issue that affects SSH protocol implementation. The vulnerability was reported in December 2022 and affects Oracle Solaris OpenSSH component. According to Oracle's security assessment, this vulnerability has a CVSS base score of 3.1 (Low severity), requires network access vector with high attack complexity, and user interaction is required (Oracle Bulletin).
The vulnerability has a CVSS Version 3.1 base score of 3.1, indicating low severity. The attack vector is network-based, requiring high attack complexity and user interaction. The vulnerability can potentially impact confidentiality with low severity, while having no impact on integrity or availability. The scope remains unchanged (Oracle Bulletin).
If successfully exploited, the vulnerability could lead to low-level confidentiality breach, with no impact on system integrity or availability (Oracle Bulletin).
The vulnerability has been addressed in Oracle Solaris through the Security Maintenance Release (SMR) process. Users should apply the available security patches to affected systems running Oracle Solaris version 11.4 (Oracle Bulletin).
Source: This report was generated using AI
Free Vulnerability Assessment
Evaluate your cloud security practices across 9 security domains to benchmark your risk level and identify gaps in your defenses.
Get a personalized demo
"Best User Experience I have ever seen, provides full visibility to cloud workloads."
"Wiz provides a single pane of glass to see what is going on in our cloud environments."
"We know that if Wiz identifies something as critical, it actually is."