CVE-2022-36633
Dashboard / Vulnerabilities / CVE-2022-36633
Summary:
Details: Teleport 9.3.6 is vulnerable to Command injection leading to Remote Code Execution. An attacker can craft a malicious ssh agent installation link by URL encoding a bash escape with carriage return line feed. This url encoded payload can be used in place of a token and sent to a user in a social engineering attack. This is fully unauthenticated attack utilizing the trusted teleport server to deliver the payload.
References: http://packetstormsecurity.com/files/168477/Teleport-10.1.1-Remote-Code-Execution.html, https://packetstormsecurity.com/files/168137/Teleport-9.3.6-Command-Injection.html, https://github.com/CVEProject/cvelistV5/tree/main/cves/2022/36xxx/CVE-2022-36633.json, https://nvd.nist.gov/vuln/detail/CVE-2022-36633, https://github.com/gravitational/teleport
Affected packages
Package
Name:
Purl:
