CVE-2006-3595
Status: ModifiedHigh (7.5)—
The default configuration of IOS HTTP server in Cisco Router Web Setup (CRWS) before 3.3.0 build 31 does not require credentials, which allows remote attackers to access the server with arbitrary privilege levels, aka bug CSCsa78190.
CVSS
- Version: 2.0
- Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P
- Base score: 7.5
Exploitation probability (EPSS)
- Probability of exploitation in the next 30 days: 4.29%
- Percentile among all scored CVEs: 91
- Score date: 10/7/2026
EPSS (Exploit Prediction Scoring System, FIRST) estimates how likely a vulnerability is to be exploited in the wild within 30 days. It complements CVSS (impact) and CISA KEV (confirmed exploitation).
Affected technologies (1)
CWEs
- NVD-CWE-Other
References
- http://secunia.com/advisories/21028
- http://securitytracker.com/id?1016476
- http://www.cisco.com/warp/public/707/cisco-sa-20060712-crws.shtml
- http://www.kb.cert.org/vuls/id/205225
- http://www.osvdb.org/27159
- http://www.securityfocus.com/bid/18953
- http://www.vupen.com/english/advisories/2006/2773
- https://exchange.xforce.ibmcloud.com/vulnerabilities/27688
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A5826
- http://secunia.com/advisories/21028
- http://securitytracker.com/id?1016476
- http://www.cisco.com/warp/public/707/cisco-sa-20060712-crws.shtml
- http://www.kb.cert.org/vuls/id/205225
- http://www.osvdb.org/27159
- http://www.securityfocus.com/bid/18953
- http://www.vupen.com/english/advisories/2006/2773
- https://exchange.xforce.ibmcloud.com/vulnerabilities/27688
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A5826
Raw JSON (NVD)
Show
{
"id": "CVE-2006-3595",
"cveTags": [],
"metrics": {
"cvssMetricV2": [
{
"type": "Primary",
"source": "nvd@nist.gov",
"cvssData": {
"version": "2.0",
"baseScore": 7.5,
"accessVector": "NETWORK",
"vectorString": "AV:N/AC:L/Au:N/C:P/I:P/A:P",
"authentication": "NONE",
"integrityImpact": "PARTIAL",
"accessComplexity": "LOW",
"availabilityImpact": "PARTIAL",
"confidentialityImpact": "PARTIAL"
},
"acInsufInfo": false,
"impactScore": 6.4,
"baseSeverity": "HIGH",
"obtainAllPrivilege": false,
"exploitabilityScore": 10,
"obtainUserPrivilege": false,
"obtainOtherPrivilege": true,
"userInteractionRequired": false
}
]
},
"affected": [
{
"source": "cve@mitre.org",
"affectedData": [
{
"vendor": "n/a",
"product": "n/a",
"versions": [
{
"status": "affected",
"version": "n/a"
}
]
}
]
}
],
"published": "2006-07-18T15:37:00.000",
"references": [
{
"url": "http://secunia.com/advisories/21028",
"tags": [
"Vendor Advisory"
],
"source": "cve@mitre.org"
},
{
"url": "http://securitytracker.com/id?1016476",
"source": "cve@mitre.org"
},
{
"url": "http://www.cisco.com/warp/public/707/cisco-sa-20060712-crws.shtml",
"tags": [
"Patch"
],
"source": "cve@mitre.org"
},
{
"url": "http://www.kb.cert.org/vuls/id/205225",
"tags": [
"US Government Resource"
],
"source": "cve@mitre.org"
},
{
"url": "http://www.osvdb.org/27159",
"source": "cve@mitre.org"
},
{
"url": "http://www.securityfocus.com/bid/18953",
"source": "cve@mitre.org"
},
{
"url": "http://www.vupen.com/english/advisories/2006/2773",
"source": "cve@mitre.org"
},
{
"url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/27688",
"source": "cve@mitre.org"
},
{
"url": "https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A5826",
"source": "cve@mitre.org"
},
{
"url": "http://secunia.com/advisories/21028",
"tags": [
"Vendor Advisory"
],
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://securitytracker.com/id?1016476",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://www.cisco.com/warp/public/707/cisco-sa-20060712-crws.shtml",
"tags": [
"Patch"
],
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://www.kb.cert.org/vuls/id/205225",
"tags": [
"US Government Resource"
],
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://www.osvdb.org/27159",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://www.securityfocus.com/bid/18953",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://www.vupen.com/english/advisories/2006/2773",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/27688",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A5826",
"source": "af854a3a-2127-422b-91ae-364da2661108"
}
],
"vulnStatus": "Modified",
"weaknesses": [
{
"type": "Primary",
"source": "nvd@nist.gov",
"description": [
{
"lang": "en",
"value": "NVD-CWE-Other"
}
]
}
],
"descriptions": [
{
"lang": "en",
"value": "The default configuration of IOS HTTP server in Cisco Router Web Setup (CRWS) before 3.3.0 build 31 does not require credentials, which allows remote attackers to access the server with arbitrary privilege levels, aka bug CSCsa78190."
},
{
"lang": "es",
"value": "La configuración por defecto en el servidor IOS HTTP en Cisco Router Web Setup (CRWS) anterior a 3.3.0 construcción 31 no requiere credenciales, lo cual permite a atacantes remotos acceder al servidor con niveles de privielgio de su elección, también conocido como fallo CSCsa78190."
}
],
"lastModified": "2026-06-16T22:27:23.300",
"configurations": [
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:a:cisco:router_web_setup:3.3.0_build_30:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "7587F6EB-2495-4D9C-A0EF-5CE2858F464C"
}
],
"operator": "OR"
}
]
}
],
"sourceIdentifier": "cve@mitre.org"
}