Vulnslist

Cisco vulnerabilities by product, model, software, and advisory.

Cisco Clean Access Unauthenticated API Access

cisco-sa-20050817-cca · NA · Published · Updated

Cisco Clean Access (CCA) is a software solution that can automatically detect, isolate, and clean infected or vulnerable devices that attempt to access your network. CCA includes as part of the architecture an Application Program Interface (API). Lack of authentication while invoking API methods can allow an attacker to bypass security posture checking, change the assigned role for a user, disconnect users and can also lead to information disclosure on configured users. Cisco has made free software patches available to address this vulnerability. This advisory is posted at https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20050817-cca.

Cisco advisory · CSAF JSON

Workarounds

No workaround information imported yet.

CVEsCVE-2005-2631
Cisco Bug IDsNA
CVSS ScoreBase NA
Product Names From Source
NA, Cisco NAC Appliance Software

Related Products

Product CVE Evidence
Cisco NAC Appliance Software CVE-2005-2631 Cisco OpenVuln