: Vulnerability scanners often flag SSH version 2.0 if it supports outdated algorithms (like 3DES or SHA-1) or RSA keys under 2048 bits. The Fix :
Affected systems contain a hard-coded root SSH account with static credentials that cannot be changed or removed.
Simply patching is for this vulnerability. The backdoor persists on the filesystem. You must check for indicators of compromise (IoCs).
to verify if your specific hardware/software version is affected and download the recommended fix. Verify SSH Status show ip ssh