CVE-2005-4332

Description

Cisco Clean Access 3.5.5 and earlier on the Secure Smart Manager allows remote attackers to bypass authentication and cause a denial of service or upload files via direct requests to obsolete JSP files including (1) admin/uploadclient.jsp, (2) apply_firmware_action.jsp, and (3) file.jsp.

Software From Fixed in
cisco / network_admission_control_manager_and_server_system_software 3.3 3.3.x
cisco / network_admission_control_manager_and_server_system_software 3.3.1 3.3.1.x
cisco / network_admission_control_manager_and_server_system_software 3.3.2 3.3.2.x
cisco / network_admission_control_manager_and_server_system_software 3.3.3 3.3.3.x
cisco / network_admission_control_manager_and_server_system_software 3.3.4 3.3.4.x
cisco / network_admission_control_manager_and_server_system_software 3.3.5 3.3.5.x
cisco / network_admission_control_manager_and_server_system_software 3.3.6 3.3.6.x
cisco / network_admission_control_manager_and_server_system_software 3.3.7 3.3.7.x
cisco / network_admission_control_manager_and_server_system_software 3.3.8 3.3.8.x
cisco / network_admission_control_manager_and_server_system_software 3.3.9 3.3.9.x
cisco / network_admission_control_manager_and_server_system_software 3.4 3.4.x
cisco / network_admission_control_manager_and_server_system_software 3.4.1 3.4.1.x
cisco / network_admission_control_manager_and_server_system_software 3.4.2 3.4.2.x
cisco / network_admission_control_manager_and_server_system_software 3.4.3 3.4.3.x
cisco / network_admission_control_manager_and_server_system_software 3.4.4 3.4.4.x
cisco / network_admission_control_manager_and_server_system_software 3.4.5 3.4.5.x
cisco / network_admission_control_manager_and_server_system_software 3.5 3.5.x
cisco / network_admission_control_manager_and_server_system_software 3.5.1 3.5.1.x
cisco / network_admission_control_manager_and_server_system_software 3.5.2 3.5.2.x
cisco / network_admission_control_manager_and_server_system_software 3.5.3 3.5.3.x
cisco / network_admission_control_manager_and_server_system_software 3.5.4 3.5.4.x
cisco / network_admission_control_manager_and_server_system_software 3.5.5 3.5.5.x