CVE-2006-3896

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
19/12/2006
Last modified:
09/04/2025

Description

The NeoScale Systems CryptoStor 700 series appliance before 2.6 relies on client-side ActiveX code for smartcard authentication, which allows remote attackers to bypass smartcard authentication, and gain access if able to present a valid username and password, by disabling ActiveX.

Vulnerable products and versions

CPE From Up to
cpe:2.3:h:neoscale_systems:cryptostor_tape_700:*:*:*:*:*:*:*:*