IT

Tracker / CVE-2006-4312

CVE-2006-4312

Medium 6.8

Cisco PIX 500 Series Security Appliances and ASA 5500 Series Adaptive Security Appliances, when running 7.0(x) up to 7.0(5) and 7.1(x) up to 7.1(2.4), and Firewall Services Module (FWSM) 3.1(x) up to 3.1(1.6), causes the EXEC password, local user passwords, and the enable password to be changed to a "non-random value" under certain circumstances, which causes administrators to be locked out and might allow attackers to gain access.

Affected products and versions

cisco adaptive_security_appliance
cisco pix_firewall_501
cisco pix_firewall_506
cisco pix_firewall_515
cisco pix_firewall_515e
cisco pix_firewall_520
cisco pix_firewall_525
cisco pix_firewall_535
cisco pix_firewall_software

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References