Security Advisory

CVE-2006-3896

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2006-12-19 19:00:00
Last updated 2024-08-07 18:48:39
Assigner certcc
State PUBLISHED

Description

The NeoScale Systems CryptoStor 700 series appliance before 2.6 relies on client-side ActiveX code for smartcard authentication, which allows remote attackers to bypass smartcard authentication, and gain access if able to present a valid username and password, by disabling ActiveX.