Vulnerability
CVE-2016-1908
CVE-2016-1908 is a critical-severity vulnerability (CVSS v3.1 9.8). As of 2026-10-05, 77 437 hosts in our data show software it affects on an open port in at least 15 countries.
The client in OpenSSH before 7.2 mishandles failed cookie generation for untrusted X11 forwarding and relies on the local X11 server for access-control decisions, which allows remote X11 clients to trigger a fallback and obtain trusted X11 forwarding privileges by leveraging configuration issues on this X11 server, as demonstrated by lack of the SECURITY extension on this X11 server.
- Published
- 2017-04-11
- Last modified
- 2026-05-29
- CVSS score
- 9.8 CVSS v3.1
- CVSS vector (v3.1)
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
- Exploit likelihood (EPSS)
- Not scored
Exposure in our data
77 437 hosts
Hosts whose banner shows an affected software version on a port open at their latest check.
Not counted: 4 738 hosts with this CVE only from an older observation.
Counted 2026-10-05 02:21 UTC
By country
| Germany DE | 12 371 |
| France FR | 9 886 |
| United States US | 9 622 |
| United Kingdom GB | 5 333 |
| Netherlands NL | 4 930 |
| Italy IT | 3 413 |
| China CN | 2 852 |
| Spain ES | 2 349 |
| Poland PL | 2 303 |
| Switzerland CH | 2 174 |
| Czechia CZ | 1 964 |
| Russia RU | 1 630 |
| Lithuania LT | 1 316 |
| Sweden SE | 1 300 |
| Japan JP | 1 170 |
Affected software seen
| openssh 6.7p1 | 13 100 |
| openssh 5.3 | 12 308 |
| openssh 6.6.1p1 | 11 969 |
| openssh 6.0p1 | 6 406 |
| openssh 6.6.1 | 5 875 |
| openssh 4.3 | 4 402 |
| openssh 5.9p1 | 3 041 |
| openssh 5.5p1 | 2 083 |
| openssh 7.1 | 1 506 |
| openssh 5.1p1 | 1 252 |
| openssh 6.2 | 982 |
| openssh 5.8 | 955 |