Free and open-source vulnerability scanner

Mageni eases for you the vulnerability scanning, assessment, and management process. It is free and open-source.

Install Now

Available for macOS, Windows, and Linux

App screenshot

SSF Detection

Information

Severity

Severity

Low

Family

Family

Service detection

CVSSv2 Base

CVSSv2 Base

2.6

CVSSv2 Vector

CVSSv2 Vector

AV:N/AC:H/Au:N/C:N/I:N/A:P

Solution Type

Solution Type

Mitigation

Created

Created

15 years ago

Modified

Modified

5 years ago

Summary

The remote version of the SSH server is not maintained any more.

Insight

Insight

According to its banner, the remote SSH server is the SSF derivative. SSF had been written to be compliant with restrictive laws on cryptography in some European countries, France especially. These regulations have been softened and OpenSSH received a formal authorisation from the French administration in 2002 and the development of SSF has been discontinued. SSF is based upon an old version of OpenSSH and it implements an old version of the protocol. As it is not maintained any more, it might be vulnerable to dangerous flaws.

Solution

Solution

Remove SSF and install an up to date version of OpenSSH.