First published: Tue May 09 2006(Updated: )
Cisco PIX/ASA 7.1.x before 7.1(2) and 7.0.x before 7.0(5), PIX 6.3.x before 6.3.5(112), and FWSM 2.3.x before 2.3(4) and 3.x before 3.1(7), when used with Websense/N2H2, allows remote attackers to bypass HTTP access restrictions by splitting the GET method of an HTTP request into multiple packets, which prevents the request from being sent to Websense for inspection, aka bugs CSCsc67612, CSCsc68472, and CSCsd81734.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco Adaptive Security Appliance Software | =7.0 | |
Cisco Adaptive Security Appliance Software | =7.0\(4\) | |
Cisco Adaptive Security Appliance Software | =7.0.1.4 | |
Cisco Adaptive Security Appliance Software | =7.0.4.3 | |
Cisco PIX | =6.2.2.111 | |
Cisco PIX | =6.2.3_\(110\) | |
Cisco PIX | =6.3.3_\(133\) | |
Cisco Firewall Services Module Software | =2.3 | |
Cisco Firewall Services Module Software | =3.1 | |
Cisco PIX | =6.1.5\(104\) | |
Cisco PIX Firewall | =2.7 | |
Cisco PIX Firewall | =3.0 | |
Cisco PIX Firewall | =3.1 | |
Cisco PIX Firewall | =4.0 | |
Cisco PIX Firewall | =4.1\(6\) | |
Cisco PIX Firewall | =4.1\(6b\) | |
Cisco PIX Firewall | =4.2 | |
Cisco PIX Firewall | =4.2\(1\) | |
Cisco PIX Firewall | =4.2\(2\) | |
Cisco PIX Firewall | =4.2\(5\) | |
Cisco PIX Firewall | =4.3 | |
Cisco PIX Firewall | =4.4 | |
Cisco PIX Firewall | =4.4\(4\) | |
Cisco PIX Firewall | =4.4\(7.202\) | |
Cisco PIX Firewall | =4.4\(8\) | |
Cisco PIX Firewall | =5.0 | |
Cisco PIX Firewall | =5.1 | |
Cisco PIX Firewall | =5.1\(4\) | |
Cisco PIX Firewall | =5.1\(4.206\) | |
Cisco PIX Firewall | =5.2 | |
Cisco PIX Firewall | =5.2\(1\) | |
Cisco PIX Firewall | =5.2\(2\) | |
Cisco PIX Firewall | =5.2\(3.210\) | |
Cisco PIX Firewall | =5.2\(5\) | |
Cisco PIX Firewall | =5.2\(6\) | |
Cisco PIX Firewall | =5.2\(7\) | |
Cisco PIX Firewall | =5.2\(9\) | |
Cisco PIX Firewall | =5.3 | |
Cisco PIX Firewall | =5.3\(1\) | |
Cisco PIX Firewall | =5.3\(1.200\) | |
Cisco PIX Firewall | =5.3\(2\) | |
Cisco PIX Firewall | =5.3\(3\) | |
Cisco PIX Firewall | =6.0 | |
Cisco PIX Firewall | =6.0\(1\) | |
Cisco PIX Firewall | =6.0\(2\) | |
Cisco PIX Firewall | =6.0\(3\) | |
Cisco PIX Firewall | =6.0\(4\) | |
Cisco PIX Firewall | =6.0\(4.101\) | |
Cisco PIX Firewall | =6.1 | |
Cisco PIX Firewall | =6.1\(1\) | |
Cisco PIX Firewall | =6.1\(2\) | |
Cisco PIX Firewall | =6.1\(3\) | |
Cisco PIX Firewall | =6.1\(4\) | |
Cisco PIX Firewall | =6.1\(5\) | |
Cisco PIX Firewall | =6.2 | |
Cisco PIX Firewall | =6.2\(1\) | |
Cisco PIX Firewall | =6.2\(2\) | |
Cisco PIX Firewall | =6.2\(3\) | |
Cisco PIX Firewall | =6.2\(3.100\) | |
Cisco PIX Firewall | =6.3 | |
Cisco PIX Firewall | =6.3\(1\) | |
Cisco PIX Firewall | =6.3\(2\) | |
Cisco PIX Firewall | =6.3\(3\) | |
Cisco PIX Firewall | =6.3\(3.102\) | |
Cisco PIX Firewall | =6.3\(3.109\) | |
Cisco PIX Firewall | =6.3\(5\) | |
All of | ||
Any of | ||
Cisco Adaptive Security Appliance Software | =7.0 | |
Cisco Adaptive Security Appliance Software | =7.0\(4\) | |
Cisco Adaptive Security Appliance Software | =7.0.1.4 | |
Cisco Adaptive Security Appliance Software | =7.0.4.3 | |
Any of | ||
Cisco PIX | =6.2.2.111 | |
Cisco PIX | =6.2.3_\(110\) | |
Cisco PIX | =6.3.3_\(133\) | |
Cisco Firewall Services Module Software | =2.3 | |
Cisco Firewall Services Module Software | =3.1 | |
Cisco PIX Firewall | =2.7 | |
Cisco PIX Firewall | =3.0 | |
Cisco PIX Firewall | =3.1 | |
Cisco PIX Firewall | =4.0 | |
Cisco PIX Firewall | =4.1\(6\) | |
Cisco PIX Firewall | =4.1\(6b\) | |
Cisco PIX Firewall | =4.2 | |
Cisco PIX Firewall | =4.2\(1\) | |
Cisco PIX Firewall | =4.2\(2\) | |
Cisco PIX Firewall | =4.2\(5\) | |
Cisco PIX Firewall | =4.3 | |
Cisco PIX Firewall | =4.4 | |
Cisco PIX Firewall | =4.4\(4\) | |
Cisco PIX Firewall | =4.4\(7.202\) | |
Cisco PIX Firewall | =4.4\(8\) | |
Cisco PIX Firewall | =5.0 | |
Cisco PIX Firewall | =5.1 | |
Cisco PIX Firewall | =5.1\(4\) | |
Cisco PIX Firewall | =5.1\(4.206\) | |
Cisco PIX Firewall | =5.2 | |
Cisco PIX Firewall | =5.2\(1\) | |
Cisco PIX Firewall | =5.2\(2\) | |
Cisco PIX Firewall | =5.2\(3.210\) | |
Cisco PIX Firewall | =5.2\(5\) | |
Cisco PIX Firewall | =5.2\(6\) | |
Cisco PIX Firewall | =5.2\(7\) | |
Cisco PIX Firewall | =5.2\(9\) | |
Cisco PIX Firewall | =5.3 | |
Cisco PIX Firewall | =5.3\(1\) | |
Cisco PIX Firewall | =5.3\(1.200\) | |
Cisco PIX Firewall | =5.3\(2\) | |
Cisco PIX Firewall | =5.3\(3\) | |
Cisco PIX Firewall | =6.0 | |
Cisco PIX Firewall | =6.0\(1\) | |
Cisco PIX Firewall | =6.0\(2\) | |
Cisco PIX Firewall | =6.0\(3\) | |
Cisco PIX Firewall | =6.0\(4\) | |
Cisco PIX Firewall | =6.0\(4.101\) | |
Cisco PIX Firewall | =6.1 | |
Cisco PIX Firewall | =6.1\(1\) | |
Cisco PIX Firewall | =6.1\(2\) | |
Cisco PIX Firewall | =6.1\(3\) | |
Cisco PIX Firewall | =6.1\(4\) | |
Cisco PIX Firewall | =6.1\(5\) | |
Cisco PIX Firewall | =6.1.5\(104\) | |
Cisco PIX Firewall | =6.2 | |
Cisco PIX Firewall | =6.2\(1\) | |
Cisco PIX Firewall | =6.2\(2\) | |
Cisco PIX Firewall | =6.2\(3\) | |
Cisco PIX Firewall | =6.2\(3.100\) | |
Cisco PIX Firewall | =6.3 | |
Cisco PIX Firewall | =6.3\(1\) | |
Cisco PIX Firewall | =6.3\(2\) | |
Cisco PIX Firewall | =6.3\(3\) | |
Cisco PIX Firewall | =6.3\(3.102\) | |
Cisco PIX Firewall | =6.3\(3.109\) | |
Cisco PIX Firewall | =6.3\(5\) |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2006-0515 has a medium severity rating, allowing unauthorized users to bypass HTTP access restrictions.
To fix CVE-2006-0515, upgrade to Cisco PIX/ASA version 7.1(2) or newer, or apply the appropriate patches provided by Cisco.
CVE-2006-0515 affects Cisco PIX and ASA devices running various versions of the software including 6.3.x and 7.0.x.
Yes, CVE-2006-0515 allows attackers to bypass web access controls, potentially leading to data breaches.
While CVE-2006-0515 was reported in 2006, any affected systems that haven't been updated remain at risk today.