nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2021-47759 CVE-2021-47759
MEDIUM
MTPutty 1.0.1.21 - SSH Password Disclosure
Record summary
CVE-2021-47759 has a selected CVSS score of 6.8 (medium); EIP currently links 1 catalogued exploit.
Description
MTPutty 1.0.1.21 contains a sensitive information disclosure vulnerability that allows local attackers to view SSH connection passwords through Windows PowerShell process listing. Attackers can run a PowerShell command to retrieve the full command line of MTPutty processes, exposing plaintext SSH credentials.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
CISA SSVC decision
ExploitationPoC
AutomatableNo
Technical impactPartial
CISA Coordinator · SSVC 2.0.3 · Evaluated Jan 15, 2026 · Source: CVE List
Affected products and versions
1| Product | Source | Version range | Status |
|---|---|---|---|
MTPuttyBrowse Ttyplus / MTPutty | CVE List | 1.0.1.21 | affected |
Proofs of concept
1Catalogued exploits
ExploitDBMTPutty 1.0.1.21 - SSH Password DisclosureExploitDB exploitby Sedat OzdemirNot analyzed1 file
References
3Official MTPutty Product Homepageproduct
https://ttyplus.com/multi-tabbed-putty ExploitDB-50574exploit
https://www.exploit-db.com/exploits/50574