CVE-2023-51385

MEDIUM

OpenSSH <9.6 - Command Injection

Title source: llm

Description

In ssh in OpenSSH before 9.6, OS command injection might occur if a user name or host name has shell metacharacters, and this name is referenced by an expansion token in certain situations. For example, an untrusted Git repository can have a submodule with shell metacharacters in a user name or host name.

Exploits (24)

nomisec WORKING POC 51 stars
by vin01 · poc
https://github.com/vin01/poc-proxycommand-vulnerable
nomisec WORKING POC 7 stars
by LtmThink · poc
https://github.com/LtmThink/CVE-2023-51385_test
nomisec SUSPICIOUS 5 stars
by Le1a · poc
https://github.com/Le1a/CVE-2023-51385
nomisec STUB 2 stars
by WOOOOONG · poc
https://github.com/WOOOOONG/CVE-2023-51385
nomisec NO CODE
by GroundCTL2MajorTom · poc
https://github.com/GroundCTL2MajorTom/CVE-2023-51385P-POC
gitlab WORKING POC
by testu2584 · poc
https://gitlab.com/testu2584/CVE-2023-51385_test
nomisec NO CODE
by FeatherStark · poc
https://github.com/FeatherStark/CVE-2023-51385
nomisec NO CODE
by farliy-hacker · poc
https://github.com/farliy-hacker/CVE-2023-51385
nomisec NO CODE
by Sonicrrrr · poc
https://github.com/Sonicrrrr/CVE-2023-51385
nomisec NO CODE
by farliy-hacker · poc
https://github.com/farliy-hacker/CVE-2023-51385-save
nomisec NO CODE
by thinkliving2020 · poc
https://github.com/thinkliving2020/CVE-2023-51385-
nomisec STUB
by endasugrue · poc
https://github.com/endasugrue/CVE-2023-51385_poc
nomisec STUB
by MiningBot-eth · poc
https://github.com/MiningBot-eth/CVE-2023-51385-exploit
nomisec STUB
by c0deur · poc
https://github.com/c0deur/CVE-2023-51385
nomisec STUB
by julienbrs · poc
https://github.com/julienbrs/exploit-CVE-2023-51385
nomisec WORKING POC
by power1314520 · poc
https://github.com/power1314520/CVE-2023-51385_test
nomisec STUB
by 2048JiaLi · poc
https://github.com/2048JiaLi/CVE-2023-51385
nomisec WORKING POC
by Featherw1t · poc
https://github.com/Featherw1t/CVE-2023-51385_test
nomisec WORKING POC
by WLaoDuo · poc
https://github.com/WLaoDuo/CVE-2023-51385_poc-test
nomisec STUB
by watarium · poc
https://github.com/watarium/poc-cve-2023-51385
nomisec WORKING POC
by saarcastified · poc
https://github.com/saarcastified/CVE-2023-51385---OpenSSH-ProxyCommand-Injection-PoC
nomisec STUB
by julienbrs · poc
https://github.com/julienbrs/malicious-exploit-CVE-2023-51385
nomisec NO CODE
by GroundCTL2MajorTom · poc
https://github.com/GroundCTL2MajorTom/CVE-2023-51385POC

Scores

CVSS v3 6.5
EPSS 0.1652
EPSS Percentile 94.8%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N

Classification

CWE
CWE-78
Status published

Affected Products (4)

openbsd/openssh < 9.6
debian/debian_linux
debian/debian_linux
debian/debian_linux

Timeline

Published Dec 18, 2023
Tracked Since Feb 18, 2026