OpenSSH authentication exploit (SKey-bsdauth) v1.43

Vulnerability exploited: CAN-2002-0639 - BID-5093

Category: Exploits/Remote

Exploits an integer overflow condition in authentication code in OpenSSH.
This exploit abuses an integer overflow condition present in sshd's authentication for bsdauth and skey authentication modes.After successful exploitation a level 0 agent will be deployed.The level 0 agent will be installed with root priveleges.Tests performed in our lab required up to 1 hour to find the needed address in the raw brute forcing mode.

Supported Systems:
    OpenBSD 3.0 (i386)
    OpenBSD 3.1 (i386)


This module is included in the latest version of CORE IMPACT, the first automated comprehensive penetration testing product for accurately identifying information security risks. Click here to learn more about the product.