CVE-2006-4194 describes an unspecified vulnerability in Cisco PIX 500 Series Security Appliances, including models like the 501, 506, 515, 515e, 520, 525, and 535, as well as PIX Firewall Software. This flaw could allow remote attackers to send arbitrary UDP packets to internal network devices through unstated vectors related to Session Initiation Protocol (SIP) fixup commands. With a CVSS score of 5.0 (AV:N/AC:L/Au:N/C:N/I:P/A:N), it indicates a network-exploitable vulnerability with low attack complexity, requiring no authentication, and potentially leading to partial integrity impact without affecting confidentiality or availability. Despite the potential for impact, the vendor was unable to reproduce the issue, and there is no known exploit code (Metasploit, Nuclei, ExploitDB) or active exploitation (KEV, Hot List). Community discussion and media coverage are also absent, suggesting a low level of public awareness or concern.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
All Versions ImpactedCPE matchmatch criteria | cpe:2.3:h:cisco:pix_firewall_501:*:*:*:*:*:*:*:* | ||
All Versions ImpactedCPE matchmatch criteria | cpe:2.3:h:cisco:pix_firewall_506:*:*:*:*:*:*:*:* | ||
All Versions ImpactedCPE matchmatch criteria | cpe:2.3:h:cisco:pix_firewall_515:*:*:*:*:*:*:*:* | ||
All Versions ImpactedCPE matchmatch criteria | cpe:2.3:h:cisco:pix_firewall_515e:*:*:*:*:*:*:*:* | ||
All Versions ImpactedCPE matchmatch criteria | cpe:2.3:h:cisco:pix_firewall_520:*:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:L/Au:N/C:N/I:P/A:N
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.