7.5
CVSSv2

CVE-2006-3226

Published: 26/06/2006 Updated: 18/10/2018
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Cisco Secure Access Control Server (ACS) 4.x for Windows uses the client's IP address and the server's port number to grant access to an HTTP server port for an administration session, which allows remote malicious users to bypass authentication via various methods, aka "ACS Weak Session Management Vulnerability."

Vulnerable Product Search on Vulmon Subscribe to Product

cisco secure access control server 4.0.1

cisco secure access control server 4.0