Cisco PIX 500 Series Security Appliances and ASA 5500 Series Adaptive Security Appliances, when running 7.0(x) up to 7.0(5) and 7.1(x) up to 7.1(2.4), and Firewall Services Module (FWSM) 3.1(x) up to 3.1(1.6), causes the EXEC password, local user passwords, and the enable password to be changed to a "non-random value" under certain circumstances, which causes administrators to be locked out and might allow attackers to gain access.

Project Subscriptions

Vendors Products
Adaptive Security Appliance Subscribe
Pix Firewall 501 Subscribe
Pix Firewall 506 Subscribe
Pix Firewall 515 Subscribe
Pix Firewall 515e Subscribe
Pix Firewall 520 Subscribe
Pix Firewall 525 Subscribe
Pix Firewall 535 Subscribe
Pix Firewall Software Subscribe
Advisories
Source ID Title
EUVD EUVD EUVD-2006-4300 Cisco PIX 500 Series Security Appliances and ASA 5500 Series Adaptive Security Appliances, when running 7.0(x) up to 7.0(5) and 7.1(x) up to 7.1(2.4), and Firewall Services Module (FWSM) 3.1(x) up to 3.1(1.6), causes the EXEC password, local user passwords, and the enable password to be changed to a "non-random value" under certain circumstances, which causes administrators to be locked out and might allow attackers to gain access.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-08-07T19:06:07.253Z

Reserved: 2006-08-23T04:00:00.000Z

Link: CVE-2006-4312

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Deferred

Published: 2006-08-23T22:04:00.000

Modified: 2025-04-03T01:03:51.193

Link: CVE-2006-4312

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses