Show filters
28 Total Results
Displaying 21-28 of 28
Sort by:
Attacker Value
Unknown

CVE-2006-3288

Disclosure Date: June 28, 2006 (last updated October 04, 2023)
Unspecified vulnerability in the TFTP server in Cisco Wireless Control System (WCS) for Linux and Windows before 3.2(51), when configured to use a directory path name that contains a space character, allows remote authenticated users to read and overwrite arbitrary files via unspecified vectors.
0
Attacker Value
Unknown

CVE-2006-3287

Disclosure Date: June 28, 2006 (last updated October 04, 2023)
Cisco Wireless Control System (WCS) for Linux and Windows 4.0(1) and earlier uses a default administrator username "root" and password "public," which allows remote attackers to gain access (aka bug CSCse21391).
0
Attacker Value
Unknown

CVE-2006-3290

Disclosure Date: June 28, 2006 (last updated October 04, 2023)
HTTP server in Cisco Wireless Control System (WCS) for Linux and Windows before 3.2(51) stores sensitive information under the web root with insufficient access control, which allows remote attackers to obtain usernames and directory paths via a direct URL request.
0
Attacker Value
Unknown

CVE-2006-3289

Disclosure Date: June 28, 2006 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in the login page of the HTTP interface for the Cisco Wireless Control System (WCS) for Linux and Windows before 3.2(51) allows remote attackers to inject arbitrary web script or HTML via unspecified vectors involving a "malicious URL".
0
Attacker Value
Unknown

CVE-2006-3286

Disclosure Date: June 28, 2006 (last updated October 04, 2023)
The internal database in Cisco Wireless Control System (WCS) for Linux and Windows before 3.2(63) stores a hard-coded username and password in plaintext within unspecified files, which allows remote authenticated users to access the database (aka bug CSCsd15951).
0
Attacker Value
Unknown

CVE-2006-3285

Disclosure Date: June 28, 2006 (last updated October 04, 2023)
The internal database in Cisco Wireless Control System (WCS) for Linux and Windows before 3.2(51) uses an undocumented, hard-coded username and password, which allows remote authenticated users to read, and possibly modify, sensitive configuration data (aka bugs CSCsd15955).
0
Attacker Value
Unknown

CVE-2005-2668

Disclosure Date: August 23, 2005 (last updated February 22, 2025)
Multiple buffer overflows in Computer Associates (CA) Message Queuing (CAM / CAFT) 1.05, 1.07 before Build 220_13, and 1.11 before Build 29_13 allow remote attackers to execute arbitrary code via unknown vectors.
0
Attacker Value
Unknown

CVE-2005-2669

Disclosure Date: August 23, 2005 (last updated February 22, 2025)
Computer Associates (CA) Message Queuing (CAM / CAFT) 1.05, 1.07 before Build 220_13, and 1.11 before Build 29_13 allows remote attackers to execute arbitrary commands via spoofed CAFT packets.
0