Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2006-3291

Опубликовано: 28 июн. 2006
Источник: nvd
CVSS2: 9.3
EPSS Низкий

Описание

The web interface on Cisco IOS 12.3(8)JA and 12.3(8)JA1, as used on the Cisco Wireless Access Point and Wireless Bridge, reconfigures itself when it is changed to use the "Local User List Only (Individual Passwords)" setting, which removes all security and password configurations and allows remote attackers to access the system.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:o:cisco:ios:12.3\(8\)ja:*:*:*:*:*:*:*
cpe:2.3:o:cisco:ios:12.3\(8\)ja1:*:*:*:*:*:*:*

EPSS

Процентиль: 78%
0.01141
Низкий

9.3 Critical

CVSS2

Дефекты

CWE-16

Связанные уязвимости

github
почти 4 года назад

The web interface on Cisco IOS 12.3(8)JA and 12.3(8)JA1, as used on the Cisco Wireless Access Point and Wireless Bridge, reconfigures itself when it is changed to use the "Local User List Only (Individual Passwords)" setting, which removes all security and password configurations and allows remote attackers to access the system.

EPSS

Процентиль: 78%
0.01141
Низкий

9.3 Critical

CVSS2

Дефекты

CWE-16