Unrated severityNVD Advisory· Published Jun 21, 2006· Updated Apr 16, 2026
CVE-2006-3101
CVE-2006-3101
Description
Cross-site scripting (XSS) vulnerability in LogonProxy.cgi in Cisco Secure ACS for UNIX 2.3 allows remote attackers to inject arbitrary web script or HTML via the (1) error, (2) SSL, and (3) Ok parameters.
Affected products
1- cpe:2.3:a:cisco:secure_access_control_server:2.3:*:unix:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
10- secunia.com/advisories/20699nvdPatchVendor Advisory
- www.cisco.com/en/US/products/sw/secursw/ps4911/tsd_products_security_response09186a00806b8bdb.htmlnvdPatch
- securitytracker.com/idnvdExploitPatch
- www.securityfocus.com/bid/18449nvdExploitPatch
- securityreason.com/securityalert/1116nvd
- www.osvdb.org/26531nvd
- www.securityfocus.com/archive/1/437441/100/0/threadednvd
- www.securityfocus.com/archive/1/437480/100/0/threadednvd
- www.vupen.com/english/advisories/2006/2384nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/27166nvd
News mentions
0No linked articles in our index yet.