First published: Wed Jun 28 2006(Updated: )
Unspecified vulnerability in the TFTP server in Cisco Wireless Control System (WCS) for Linux and Windows before 3.2(51), when configured to use a directory path name that contains a space character, allows remote authenticated users to read and overwrite arbitrary files via unspecified vectors.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco Wireless Control System software | <=3.2\(51\) |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2006-3288 is considered a moderate severity vulnerability.
To fix CVE-2006-3288, upgrade the Cisco Wireless Control System to a version later than 3.2(51).
If exploited, CVE-2006-3288 allows remote authenticated users to read and overwrite arbitrary files.
CVE-2006-3288 affects users of Cisco Wireless Control System prior to version 3.2(51).
CVE-2006-3288 is vulnerable when the TFTP server is configured with a directory path name that contains a space character.