CVE-2018-20685
Published
CVSS v3
5.3
MEDIUM
CVSS v2
2.6
LOW
Affected
1
PROJECT
Description
In OpenSSH 7.9, scp.c in the scp client allows remote SSH servers to bypass intended access restrictions via the filename of . or an empty filename. The impact is modifying the permissions of the target directory on the client side.