Cisco Clean Access (CCA) 3.5.x through 3.5.9 and 3.6.x through 3.6.1.1 on the Clean Access Manager (CAM) allows remote attackers to bypass authentication and download arbitrary manual database backups by guessing the snapshot filename using brute force, then making a direct request for the file.
The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.
Link | Tags |
---|---|
http://secunia.com/advisories/23556 | third party advisory |
http://www.osvdb.org/32579 | vdb entry broken link |
http://www.vupen.com/english/advisories/2007/0030 | vdb entry third party advisory |
http://www.cisco.com/warp/public/707/cisco-sa-20070103-CleanAccess.shtml | vendor advisory |
http://securitytracker.com/id?1017465 | vdb entry third party advisory |