CVE-2006-5660

Cisco Security Agent Management Center <5.1.0.79 - Auth Bypass

Title source: llm
STIX 2.1

Description

Cisco Security Agent Management Center (CSAMC) 5.1 before 5.1.0.79 does not properly handle certain LDAP error messages, which allows remote attackers to bypass authentication requirements via an empty password when using an external LDAP server.

References (8)

Core 8
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/29955
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/22684
Patch, Vendor Advisory vendor-advisory x_refsource_cisco
http://www.cisco.com/en/US/products/products_security_advisory09186a00807726f7.shtml
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://www.osvdb.org/30169
Third Party Advisory vdb-entry x_refsource_vupen
http://www.vupen.com/english/advisories/2006/4308
Patch vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/20852
Third Party Advisory, VDB Entry vdb-entry x_refsource_sectrack
http://securitytracker.com/id?1017148
US Government Resource third-party-advisory x_refsource_cert-vn
http://www.kb.cert.org/vuls/id/778648

Scores

EPSS 0.0365
EPSS Percentile 88.4%

Details

Status published
Products (1)
cisco/security_agent_management_center 5.1
Published Nov 03, 2006
Tracked Since Feb 18, 2026