CVE Vulnerabilities

CVE-2005-2631

Published: Aug 23, 2005 | Modified: Oct 30, 2018
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

Cisco Clean Access (CCA) 3.3.0 to 3.3.9, 3.4.0 to 3.4.5, and 3.5.0 to 3.5.3 does not properly authenticate users when invoking API methods, which could allow remote attackers to bypass security checks, change the assigned role of a user, or disconnect users.

Affected Software

Name Vendor Start Version End Version
Network_admission_control_manager_and_server_system_software Cisco 3.3 (including) 3.3 (including)
Network_admission_control_manager_and_server_system_software Cisco 3.3.1 (including) 3.3.1 (including)
Network_admission_control_manager_and_server_system_software Cisco 3.3.2 (including) 3.3.2 (including)
Network_admission_control_manager_and_server_system_software Cisco 3.3.3 (including) 3.3.3 (including)
Network_admission_control_manager_and_server_system_software Cisco 3.3.4 (including) 3.3.4 (including)
Network_admission_control_manager_and_server_system_software Cisco 3.3.5 (including) 3.3.5 (including)
Network_admission_control_manager_and_server_system_software Cisco 3.3.6 (including) 3.3.6 (including)
Network_admission_control_manager_and_server_system_software Cisco 3.3.7 (including) 3.3.7 (including)
Network_admission_control_manager_and_server_system_software Cisco 3.3.8 (including) 3.3.8 (including)
Network_admission_control_manager_and_server_system_software Cisco 3.3.9 (including) 3.3.9 (including)
Network_admission_control_manager_and_server_system_software Cisco 3.4 (including) 3.4 (including)
Network_admission_control_manager_and_server_system_software Cisco 3.4.1 (including) 3.4.1 (including)
Network_admission_control_manager_and_server_system_software Cisco 3.4.2 (including) 3.4.2 (including)
Network_admission_control_manager_and_server_system_software Cisco 3.4.3 (including) 3.4.3 (including)
Network_admission_control_manager_and_server_system_software Cisco 3.4.4 (including) 3.4.4 (including)
Network_admission_control_manager_and_server_system_software Cisco 3.4.5 (including) 3.4.5 (including)
Network_admission_control_manager_and_server_system_software Cisco 3.5 (including) 3.5 (including)
Network_admission_control_manager_and_server_system_software Cisco 3.5.1 (including) 3.5.1 (including)
Network_admission_control_manager_and_server_system_software Cisco 3.5.2 (including) 3.5.2 (including)
Network_admission_control_manager_and_server_system_software Cisco 3.5.3 (including) 3.5.3 (including)

References