Network Admission Control Manager And Server System Software

Vendor:

First CVE: Aug 23, 2005 · Active for 20 years

7
Total CVEs
More Total CVEs than 85% of tracked products
1.8
Avg CVEs / Year
Higher CVE frequency than 63% of tracked products
7.6
Avg CVSS
Higher Avg CVSS than 63% of tracked products
0.0%
KEV Rate
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact Network Admission Control Manager And Server System Software over time

Volume of CVEsAvg CVSS Base Score
First CVE
Aug 23, 2005
20 years ago
Most Recent CVE
Apr 18, 2013
4,849 days ago

CVE Severity & Scoring

Network Admission Control Manager And Server System Software7 CVEs
All CVEs353,240 CVEs
MediumHigh
Attack Vector
Local0 (0.0%)
Network0 (0.0%)
Unknown7 (100.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low0 (0.0%)
High0 (0.0%)
Unknown7 (100.0%)
User Interaction
None0 (0.0%)
Unknown7 (100.0%)
Required0 (0.0%)
Privileges Required
Low0 (0.0%)
High0 (0.0%)
None0 (0.0%)
Unknown7 (100.0%)

Top CVEs

Signals from CVEs in this product scope (7 CVEs).

7 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
Cisco Clean Access (CCA) 3.6.x through 3.6.4.2 and 4.0.x through 4.0.3.2 does not properly configure or allow modification of a shared secret authentication key, which causes all d
Jan 4, 200710.029NONO
SQL injection vulnerability in Cisco Network Admission Control (NAC) Manager before 4.8.3.1 and 4.9.x before 4.9.2 allows remote attackers to execute arbitrary SQL commands via uns
Apr 18, 20137.524NONO
Cisco Clean Access 3.5.5 and earlier on the Secure Smart Manager allows remote attackers to bypass authentication and cause a denial of service or upload files via direct requests
Dec 17, 20059.424NONO
Cisco Clean Access (CCA) 3.5.x through 3.5.9 and 3.6.x through 3.6.1.1 on the Clean Access Manager (CAM) allows remote attackers to bypass authentication and download arbitrary man
Jan 4, 20077.820NONO
Cisco Clean Access (CCA) 3.3.0 to 3.3.9, 3.4.0 to 3.4.5, and 3.5.0 to 3.5.3 does not properly authenticate users when invoking API methods, which could allow remote attackers to by
Aug 23, 20057.519NONO
Cisco Clean Access 3.5.5 and earlier on the Secure Smart Manager allows remote attackers to bypass authentication and cause a denial of service (disk consumption), or make unauthor
Dec 31, 20055.716NONO
The Cisco Network Admission Control (NAC) 3.6.4.1 and earlier allows remote attackers to prevent installation of the Cisco Clean Access (CCA) Agent and bypass local and remote prot
Aug 29, 20065.015NONO

Exploit Exposure

Signals from CVEs in this product scope (7 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%

Social Chatter

Signals from CVEs in this product scope (7 CVEs).

Media Mentions

Signals from CVEs in this product scope (7 CVEs).

Top CNAs Publishing CVEs For Network Admission Control Manager And Server System Software

Top CWEs

Versions

VersionCVE CountAvg CVSSAvg EPSSKEVExploits
4.9.117.51.1%00
4.9.017.51.1%00
4.8.217.51.1%00
4.8.117.51.1%00
4.8.017.51.1%00
3.6.4.0.115.01.9%00
3.6.0.115.01.9%00
3.5\(9\)25.31.3%00
3.5.536.72.1%00
3.5.436.72.1%00
3.5.346.92.0%00
3.5.246.92.0%00
3.5.146.92.0%00
3.546.92.0%00
3.4.537.32.4%00
3.4.437.32.4%00
3.4.337.32.4%00
3.4.237.32.4%00
3.4.137.32.4%00
3.437.32.4%00