The ArrowPoint cookie functionality for Cisco 11000 series Content Service Switches specifies an internal IP address if the administrator does not specify a string option, which allows remote attackers to obtain sensitive information.
References
Link | Resource |
---|---|
http://www.osvdb.org/28121 | Exploit |
http://www.cisco.com/warp/public/117/AP_cookies.html |
Configurations
Information
Published : 2006-08-25 03:04
Updated : 2008-09-05 14:09
NVD link : CVE-2006-4352
Mitre link : CVE-2006-4352
JSON object : View
CWE
Products Affected
cisco
- content_services_switch_11000