CVE Database
/

CVE-2006-1961

Back to search

CVE-2006-1961

Published: Apr 21, 2006

Modified: Aug 7, 2024

PUBLISHED

Description

Cisco CiscoWorks Wireless LAN Solution Engine (WLSE) and WLSE Express before 2.13, Hosting Solution Engine (HSE) and User Registration Tool (URT) before 20060419, and all versions of Ethernet Subscriber Solution Engine (ESSE) and CiscoWorks2000 Service Management Solution (SMS) allow local users to gain Linux shell access via shell metacharacters in arguments to the "show" command in the application's command line interface (CLI), aka bug ID CSCsd21502 (WLSE), CSCsd22861 (URT), and CSCsd22859 (HSE). NOTE: other issues might be addressed by the Cisco advisory.

VendorProductVersions

n/a

n/a

affected
n/a

References

24813
vdb-entry
x_refsource_OSVDB
ADV-2006-1435
vdb-entry
x_refsource_VUPEN
17609
vdb-entry
x_refsource_BID
19736
third-party-advisory
x_refsource_SECUNIA
19739
third-party-advisory
x_refsource_SECUNIA
ADV-2006-1434
vdb-entry
x_refsource_VUPEN
19741
third-party-advisory
x_refsource_SECUNIA
1015965
vdb-entry
x_refsource_SECTRACK

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now