Unrated severityNVD Advisory· Published Jun 28, 2006· Updated Jun 16, 2026
CVE-2006-3291
CVE-2006-3291
Description
The web interface on Cisco IOS 12.3(8)JA and 12.3(8)JA1, as used on the Cisco Wireless Access Point and Wireless Bridge, reconfigures itself when it is changed to use the "Local User List Only (Individual Passwords)" setting, which removes all security and password configurations and allows remote attackers to access the system.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3= 12.3(8)JA, 12.3(8)JA1+ 2 more
- (no CPE)range: = 12.3(8)JA, 12.3(8)JA1
- cpe:2.3:o:cisco:ios:12.3\(8\)ja:*:*:*:*:*:*:*
- cpe:2.3:o:cisco:ios:12.3\(8\)ja1:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
8- www.cisco.com/warp/public/707/cisco-sa-20060628-ap.shtmlnvdPatch
- www.kb.cert.org/vuls/id/544484nvdUS Government Resource
- secunia.com/advisories/20860nvd
- securitytracker.com/idnvd
- www.osvdb.org/26878nvd
- www.securityfocus.com/bid/18704nvd
- www.vupen.com/english/advisories/2006/2584nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/27437nvd
News mentions
0No linked articles in our index yet.