Authentication Flaw in Cisco Clean Access Software
CVE-2005-2631
Currently unrated
Key Information:
- Vendor
- Cisco
- Vendor
- CVE Published:
- 23 August 2005
Summary
Cisco Clean Access versions 3.3.0 to 3.3.9, 3.4.0 to 3.4.5, and 3.5.0 to 3.5.3 contain a vulnerability that allows remote attackers to exploit unauthenticated API access. This weakness permits them to circumvent security measures, enabling unauthorized role changes for users or even disconnecting users altogether. The lack of proper authentication checks poses significant risks to network security and user integrity.
References
Timeline
Vulnerability published
Vulnerability Reserved