WARNING: This plugin will generate false positive and is purely informative:
regreSSHion: RCE in OpenSSH's server, on glibc-based Linux systems (CVE-2024-6387)
Severity: info
Fingerprint: 3f43e0ebb5dce37ab8b59eb583e3d39867420e8d67420e8d67420e8d67420e8d
Found potentially vulnerable SSH version: SSH-2.0-OpenSSH_8.9p1 Ubuntu-3ubuntu0.6 WARNING, RISK IS ESTIMATED FALSE POSITIVE ARE LIKELY
The following CentOS Web Panel is publicly accessible and looks out-dated :
It is critical to update to a safe version as soon as possible since a vulnerability allow remote attackers to achieve RCE (Remote code execution) on the service. Those vulnerabilities are currently used in ransomware campaign and could damage your network.
Reference:
Severity: critical
Fingerprint: b200c4085dcca515084ebea24b907d604b907d604b907d604b907d604b907d60
Found outdated CentOS Web Panel vulnerable to RCE Found CVE-2022-44877