CVE-2023-48795
CVSS 5.9 MEDIUM: the SSH transport protocol with certain OpenSSH extensions, found in OpenSSH before 9.6 and other products, allows… EPSS 94% (100º percentile).
Vulnerabilità ed exploit
Dispositivi PAN‑OS e Prisma SD‑WAN ION sono vulnerabili a Terrapin (CVE-2023-48795). Un attaccante che intercetta il traffico SSH può forzare il downgrade delle connessioni client e l'uso di algoritmi di autenticazione più deboli.
1 fonte · 10 mar
CVSS 5.9 MEDIUM: the SSH transport protocol with certain OpenSSH extensions, found in OpenSSH before 9.6 and other products, allows… EPSS 94% (100º percentile).
Palo Alto Networks Advisories
CVE-2023-48795 Impact of Terrapin SSH Attack
The Terrapin attack allows an attacker with the ability to intercept SSH traffic on affected Palo Alto Networks products (through machine-in-the-middle or MitM attacks) to downgrade connection securit...
originaleRiepilogo fornitore: Palo Alto Networks
Part of the PlainSec briefing for 2026-03-10
Every edition of this story: PAN-OS e Prisma SD‑WAN: downgrade SSH espone sessioni amministrative