CVE-2006-3286Cisco Wireless Control System vulnerability

3 documents3 sources
Severity
7.5HIGHNVD
EPSS
1.4%
top 19.60%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJun 28
Latest updateMay 1

Description

The internal database in Cisco Wireless Control System (WCS) for Linux and Windows before 3.2(63) stores a hard-coded username and password in plaintext within unspecified files, which allows remote authenticated users to access the database (aka bug CSCsd15951).

CVSS vector

AV:N/AC:L/C:P/I:P/A:PExploitability: 10.0 | Impact: 6.4

Affected Packages1 packages

Patches

🔴Vulnerability Details

2
GHSA
GHSA-28gh-xg9h-xpx7: The internal database in Cisco Wireless Control System (WCS) for Linux and Windows before 32022-05-01
CVEList
CVE-2006-3286: The internal database in Cisco Wireless Control System (WCS) for Linux and Windows before 32006-06-28
CVE-2006-3286 — Cisco vulnerability | cvebase