Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2006-4097

Multiple unspecified vulnerabilities in the CSRadius service in Cisco Secure Access Control Server (ACS) for Windows before 4.1 and ACS Solution Engine before 4.1 allow remote attackers to cause a denial of service (crash) via a crafted RADIUS Access-Request packet. NOTE: it has been reported that at least one issue is a heap-based buffer overflow involving the Tunnel-Password attribute.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.018
EPSS Ranking 81.5%
CVSS Severity
CVSS v2 Score 7.8
Products affected by CVE-2006-4097


Contact Us

Shodan ® - All rights reserved