Vulnerability
CVE-2023-38408
CRITICAL 9.8
patch available
CVE-2023-38408 is a critical-severity vulnerability (CVSS v3.1 9.8). As of 2026-10-05, 1 942 044 hosts in our data show software it affects on an open port in at least 15 countries.
The PKCS#11 feature in ssh-agent in OpenSSH before 9.3p2 has an insufficiently trustworthy search path, leading to remote code execution if an agent is forwarded to an attacker-controlled system. (Code in /usr/lib is not necessarily safe for loading into ssh-agent.) NOTE: this issue exists because of an incomplete fix for CVE-2016-10009.
- Published
- 2023-07-20
- Last modified
- 2024-11-21
- CVSS score
- 9.8 CVSS v3.1
- CVSS vector (v3.1)
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
- Exploit likelihood (EPSS)
- Not scored
Exposure in our data
1 942 044 hosts
Hosts whose banner shows an affected software version on a port open at their latest check.
Not counted: 100 589 hosts with this CVE only from an older observation.
Counted 2026-10-05 02:21 UTC
By country
| Germany DE | 425 029 |
| United States US | 262 691 |
| Netherlands NL | 177 545 |
| France FR | 166 006 |
| United Kingdom GB | 162 047 |
| China CN | 70 539 |
| Finland FI | 67 711 |
| Ireland IE | 44 207 |
| Poland PL | 40 393 |
| Singapore SG | 37 322 |
| Hong Kong HK | 36 990 |
| Spain ES | 36 131 |
| Italy IT | 32 360 |
| Sweden SE | 31 359 |
| Switzerland CH | 29 262 |
Affected software seen
| openssh 8.9p1 | 530 102 |
| openssh 9.2p1 | 291 387 |
| openssh 7.4 | 185 655 |
| openssh 8.2p1 | 182 297 |
| openssh 8.4p1 | 174 862 |
| openssh 8.7 | 130 996 |
| openssh 8.0 | 112 204 |
| openssh 7.6p1 | 65 999 |
| openssh 7.9p1 | 51 996 |
| openssh 7.2p2 | 28 122 |
| openssh 7.4p1 | 22 591 |
| openssh 8.2 | 16 534 |