Jakub Witczak
21 exploits
Active since Feb 2025
SSH server timing side-channel in ssh_auth:check_password/3 allows unauthenticated username enumeration
CVSS 5.3
OCSP responder certificate validity period not checked in public_key
CVSS 3.7
OCSP responder certificate validity period not checked in public_key
CVSS 3.7
Erlang OTP Pre-Auth RCE Scanner and Exploit
CVSS 10.0
Erlang OTP Pre-Auth RCE Scanner and Exploit
CVSS 10.0
Erlang OTP Pre-Auth RCE Scanner and Exploit
CVSS 10.0
Erlang OTP - Resource Leak Exposure
Erlang OTP <28.0.3 - Excessive Allocation
Erlang OTP <28.0.3 - Uncontrolled Resource Consumption
Erlang/OTP 17.0-28.0.3, 27.3.4.3, 26.2.5.15 - Uncontrolled Resource Consumption in SSH SFTP Module
Erlang OTP ssh_sftpd - Path Traversal
CVSS 5.4
Erlang OTP ssh_sftpd - Path Traversal
CVSS 5.4
OCSP designated-responder authorization bypass via missing signature verification
CVSS 7.4
OCSP designated-responder authorization bypass via missing signature verification
CVSS 7.4
Erlang OTP ssh_sftpd - Path Traversal
CVSS 5.4
Erlang/OTP 25.3.2.18-27.2.3 - Authenticated Denial of Service via SFTP Packet Size Mismatch
Erlang/OTP <27.3.4, <26.2.5.12, <25.3.2.21 - Man-in-the-Middle
CVSS 3.7
Erlang OTP - Resource Leak Exposure
Erlang OTP <28.0.3 - Excessive Allocation
Erlang OTP <28.0.3 - Uncontrolled Resource Consumption
Erlang/OTP 17.0-28.0.3, 27.3.4.3, 26.2.5.15 - Uncontrolled Resource Consumption in SSH SFTP Module