










The Okta Privileged Access client does not reject a leading hyphen in the username portion of an SSH target. As a result, the value may be interpreted as a command-line option by the underlying SSH process.
Customers using the Okta Privileged Access client versions 1.59.0 through 1.110.0 are affected.
To remediate this vulnerability, upgrade the Okta Privileged Access client to version 1.111.1 or greater.
The vulnerability is present in the Okta Privileged Access client versions 1.59.0 to 1.110.0 and resolved in the Okta Privileged Access client version 1.111.1.
此内容由惯性聚合(RSS阅读器)自动聚合整理,仅供阅读参考。 原文来自 — 版权归原作者所有。