CVE-2006-1961

3 documents3 sources
Severity
7.5HIGH
EPSS
1.3%
top 20.22%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedApr 21
Latest updateMay 1

Description

Cisco CiscoWorks Wireless LAN Solution Engine (WLSE) and WLSE Express before 2.13, Hosting Solution Engine (HSE) and User Registration Tool (URT) before 20060419, and all versions of Ethernet Subscriber Solution Engine (ESSE) and CiscoWorks2000 Service Management Solution (SMS) allow local users to gain Linux shell access via shell metacharacters in arguments to the "show" command in the application's command line interface (CLI), aka bug ID CSCsd21502 (WLSE), CSCsd22861 (URT), and CSCsd22859 (H

CVSS vector

AV:N/AC:L/C:P/I:P/A:PExploitability: 10.0 | Impact: 6.4

Affected Packages2 packages

Patches

🔴Vulnerability Details

2
GHSA
GHSA-89fx-5fv2-j67w: Cisco CiscoWorks Wireless LAN Solution Engine (WLSE) and WLSE Express before 22022-05-01
CVEList
CVE-2006-1961: Cisco CiscoWorks Wireless LAN Solution Engine (WLSE) and WLSE Express before 22006-04-21