The default configuration of IOS HTTP server in Cisco Router Web Setup (CRWS) before 3.3.0 build 31 does not require credentials, which allows remote attackers to access the server with arbitrary privilege levels, aka bug CSCsa78190.
References
Configurations
History
No history.
Information
Published : 2006-07-18 15:37
Updated : 2023-12-10 10:28
NVD link : CVE-2006-3595
Mitre link : CVE-2006-3595
CVE.ORG link : CVE-2006-3595
JSON object : View
Products Affected
cisco
- router_web_setup
CWE