Back

HIGH

Rapid7 Nexpose Virtual Appliance Duplicate SSH Host Key

Published Jan 12, 2023

Description

Nexpose and InsightVM virtual appliances downloaded between April 5th, 2017 and May 3rd, 2017 contain identical SSH host keys. Normally, a unique SSH host key should be generated the first time a virtual appliance boots.

Affected products

Remediation

No remediation recorded yet.

Metrics

References (1)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner rapid7
Published Jan 12, 2023
Updated Apr 8, 2025
Reserved Jan 9, 2017
CISA Vulnrichment
Updated Apr 8, 2025
NVD
Status Modified
Modified Jun 17, 2026
Red Hat
Severity n/a
Public date n/a