Junglewise Threat Intelligence

CVE-2023-46446: PYSEC-2023-239 - An issue in AsyncSSH v2.14.0 and earlier allows attackers to control the remote end of an SSH client session via packet injection/removal an

CVE-2023-46446 · Severity: low · CVSS 3.1 · Published 2023-11-14

Technologies: asyncssh (PyPI). Vendors: PyPI.

Executive brief

An issue in AsyncSSH v2.14.0 and earlier allows attackers to control the remote end of an SSH client session via packet injection/removal and shell emulation.

Affected products

  • PyPI asyncssh

Related threats