7.5
CVSSv2

CVE-2006-3285

Published: 28/06/2006 Updated: 20/07/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

The internal database in Cisco Wireless Control System (WCS) for Linux and Windows prior to 3.2(51) uses an undocumented, hard-coded username and password, which allows remote authenticated users to read, and possibly modify, sensitive configuration data (aka bugs CSCsd15955).

Vulnerable Product Search on Vulmon Subscribe to Product

cisco wireless control system

Vendor Advisories

Cisco Wireless Control System (WCS) contains multiple vulnerabilities which may allow a remote user to: access sensitive configuration information about access points managed by WCS read from and write to arbitrary files on a WCS system log in to a WCS system with a default administrator password execute scr ...