Small SSH RSA Key

high Nessus Plugin ID 57620

Synopsis

The SSH server is running on the remote host has an overly small public key.

Description

The remote SSH daemon has a small key size, which is insecure. Given current technology, it should be 1024 bits at a minimum.

Solution

Generate a new, larger key for the service.

Plugin Details

Severity: High

ID: 57620

File Name: ssh_key_size.nasl

Version: 1.11

Type: remote

Family: General

Published: 1/25/2012

Updated: 6/12/2020

Supported Sensors: Nessus

Risk Information

CVSS v2

Risk Factor: High

Base Score: 9.3

Vector: CVSS2#AV:N/AC:M/Au:N/C:C/I:C/A:C

CVSS v3

Risk Factor: High

Base Score: 8.1

Vector: CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H

Vulnerability Information

Excluded KB Items: global_settings/supplied_logins_only