Vulnerabilities > CVE-2006-2715 - Remote Security vulnerability in C5 Enterprise Vulnerability Management

047910
CVSS 7.5 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
PARTIAL
network
low complexity
secure-elements

Summary

The Administration Console in Secure Elements Class 5 AVR (aka C5 EVM) before 2.8.1 does not enforce access control, which allows remote attackers to gain access to servers via the console.

Vulnerable Configurations

Part Description Count
Application
Secure_Elements
1