PT-2006-5122 · Cisco · Cisco Vpn 3000 Series Concentrators
Published
2006-08-23
·
Updated
2018-10-30
·
CVE-2006-4313
CVSS v2.0
5.0
Medium
| Vector | AV:N/AC:L/Au:N/C:N/I:P/A:N |
Name of the Vulnerable Software and Affected Versions
Cisco VPN 3000 series concentrators versions 4.1.x up to 4.1(7)L
Cisco VPN 3000 series concentrators versions 4.7.x up to 4.7(2)F
Cisco VPN 3000 series concentrators version prior to 4.1
Description
The issue allows attackers to execute various FTP commands, including
CWD, MKD, CDUP, RNFR, SIZE, and RMD, to modify files or create and delete directories via unknown vectors.Recommendations
For Cisco VPN 3000 series concentrators versions 4.1.x up to 4.1(7)L, update to a version after 4.1(7)L.
For Cisco VPN 3000 series concentrators versions 4.7.x up to 4.7(2)F, update to a version after 4.7(2)F.
For Cisco VPN 3000 series concentrators version prior to 4.1, update to version 4.1 or later.
Exploit
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Cisco Vpn 3000 Series Concentrators