Vulnerability

CVE-2016-1908

CRITICAL 9.8

CVE-2016-1908 is a critical-severity vulnerability (CVSS v3.1 9.8). As of 2026-10-05, 77 437 hosts in our data show software it affects on an open port in at least 15 countries.

The client in OpenSSH before 7.2 mishandles failed cookie generation for untrusted X11 forwarding and relies on the local X11 server for access-control decisions, which allows remote X11 clients to trigger a fallback and obtain trusted X11 forwarding privileges by leveraging configuration issues on this X11 server, as demonstrated by lack of the SECURITY extension on this X11 server.

Published
2017-04-11
Last modified
2026-05-29
CVSS score
9.8 CVSS v3.1
CVSS vector (v3.1)
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Exploit likelihood (EPSS)
Not scored

Exposure in our data

77 437 hosts

Hosts whose banner shows an affected software version on a port open at their latest check.

Not counted: 4 738 hosts with this CVE only from an older observation.

Counted 2026-10-05 02:21 UTC

By country

Germany DE12 371
France FR9 886
United States US9 622
United Kingdom GB5 333
Netherlands NL4 930
Italy IT3 413
China CN2 852
Spain ES2 349
Poland PL2 303
Switzerland CH2 174
Czechia CZ1 964
Russia RU1 630
Lithuania LT1 316
Sweden SE1 300
Japan JP1 170

Affected software seen

openssh 6.7p113 100
openssh 5.312 308
openssh 6.6.1p111 969
openssh 6.0p16 406
openssh 6.6.15 875
openssh 4.34 402
openssh 5.9p13 041
openssh 5.5p12 083
openssh 7.11 506
openssh 5.1p11 252
openssh 6.2982
openssh 5.8955