CVE-2006-3551 describes a vulnerability in NCP Secure Enterprise Client (VPN/PKI client) 8.30 Build 59 and potentially earlier versions. Even when configured to block all network traffic, the client allows specific inbound UDP traffic on source port 67 to destination port 68, and outbound UDP traffic on source port 68 to destination port 67. This vulnerability has a low CVSS score of 1.2, indicating low severity with local access and high attack complexity, leading to a partial impact on integrity. There is no evidence of active exploitation, publicly available exploit code (Metasploit, Nuclei, ExploitDB), or significant community discussion or media coverage.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 8.30_build_59CPE matchmatch criteria | cpe:2.3:a:ncp_network_communications:secure_client:*:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:L/AC:H/Au:N/C:N/I:P/A:N
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.