Cisco Network Admission Control Shared Secret Vulnerability
Last Update Date:
28 Jan 2011
Release Date:
25 Apr 2008
5371
Views
RISK: Medium Risk
A vulnerability has been identified in the Cisco Network Admission Control (NAC) Appliance, which could allow an attacker to obtain the shared secret that is used between the Cisco Clean Access Server (CAS) and the Cisco Clean Access Manager (CAM).
Impact
- Remote Code Execution
System / Technologies affected
- NAC Appliance software version 3.5.x
- NAC Appliance software version 3.6.x
- NAC Appliance software version 4.0.x
- NAC Appliance software version 4.1.x
Solutions
Before installation of the software, please visit the software manufacturer web-site for more details.
- Upgrade to the appropriate version
http://www.cisco.com/warp/public/707/cisco-sa-20080416-nac.shtml
http://www.cisco.com/public/sw-center/ciscosecure/cleanaccess.shtml
Vulnerability Identifier
Source
Related Link
Share with