7.5
CVSSv2

CVE-2006-3595

Published: 18/07/2006 Updated: 11/10/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

The default configuration of IOS HTTP server in Cisco Router Web Setup (CRWS) prior to 3.3.0 build 31 does not require credentials, which allows remote malicious users to access the server with arbitrary privilege levels, aka bug CSCsa78190.

Vulnerable Product Search on Vulmon Subscribe to Product

cisco router web setup 3.3.0_build_30