PT-2006-5121 · Cisco · Cisco Asa 5500 Series Adaptive Security Appliances+2

Publicado

2006-08-23

·

Atualizado

2018-10-30

·

CVE-2006-4312

CVSS v2.0

6.8

Média

VetorAV:L/AC:L/Au:S/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Cisco PIX 500 Series Security Appliances versions 7.0(x) through 7.0(5) Cisco ASA 5500 Series Adaptive Security Appliances versions 7.0(x) through 7.0(5) Cisco ASA 5500 Series Adaptive Security Appliances versions 7.1(x) through 7.1(2.4) Cisco Firewall Services Module (FWSM) versions 3.1(x) through 3.1(1.6)
Description The issue causes the EXEC password, local user passwords, and the enable password to be changed to a non-random value under certain circumstances. This can lead to administrators being locked out and potentially allow attackers to gain access.
Recommendations For Cisco PIX 500 Series Security Appliances versions 7.0(x) through 7.0(5), update to a version outside of the affected range. For Cisco ASA 5500 Series Adaptive Security Appliances versions 7.0(x) through 7.0(5), update to a version outside of the affected range. For Cisco ASA 5500 Series Adaptive Security Appliances versions 7.1(x) through 7.1(2.4), update to a version outside of the affected range. For Cisco Firewall Services Module (FWSM) versions 3.1(x) through 3.1(1.6), update to a version outside of the affected range.

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

CVE-2006-4312

Produtos afetados

Cisco Asa 5500 Series Adaptive Security Appliances
Cisco Firewall Services Module
Cisco Pix 500 Series Security Appliances