Vulnerability Details CVE-2011-2041
The Start Before Logon (SBL) functionality in Cisco AnyConnect Secure Mobility Client (formerly AnyConnect VPN Client) before 2.3.254 on Windows, and on Windows Mobile, allows local users to gain privileges via unspecified user-interface interaction, aka Bug ID CSCta40556.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 20.7%
CVSS Severity
CVSS v2 Score 7.2
Products affected by CVE-2011-2041
-
cpe:2.3:a:cisco:anyconnect_secure_mobility_client:-
-
cpe:2.3:a:cisco:anyconnect_secure_mobility_client:2.0
-
cpe:2.3:a:cisco:anyconnect_secure_mobility_client:2.1
-
cpe:2.3:a:cisco:anyconnect_secure_mobility_client:2.2
-
cpe:2.3:a:cisco:anyconnect_secure_mobility_client:2.2.128
-
cpe:2.3:a:cisco:anyconnect_secure_mobility_client:2.2.133
-
cpe:2.3:a:cisco:anyconnect_secure_mobility_client:2.2.136
-
cpe:2.3:a:cisco:anyconnect_secure_mobility_client:2.2.140
-
cpe:2.3:a:cisco:anyconnect_secure_mobility_client:2.3
-
cpe:2.3:a:cisco:anyconnect_secure_mobility_client:2.3.185
-
cpe:2.3:a:cisco:anyconnect_secure_mobility_client:2.3.2016
-
cpe:2.3:a:cisco:anyconnect_secure_mobility_client:2.3.254
-
cpe:2.3:o:microsoft:windows:-
-
cpe:2.3:o:microsoft:windows:1.0
-
cpe:2.3:o:microsoft:windows:2.0
-
cpe:2.3:o:microsoft:windows:2000
-
cpe:2.3:o:microsoft:windows:3.0
-
cpe:2.3:o:microsoft:windows:3.1
-
cpe:2.3:o:microsoft:windows:3.11
-
cpe:2.3:o:microsoft:windows:server_2008
-
cpe:2.3:o:microsoft:windows:vista
-
cpe:2.3:o:microsoft:windows_mobile:-
-
cpe:2.3:o:microsoft:windows_mobile:2003
-
cpe:2.3:o:microsoft:windows_mobile:2003_se
-
cpe:2.3:o:microsoft:windows_mobile:2005
-
cpe:2.3:o:microsoft:windows_mobile:5.0
-
cpe:2.3:o:microsoft:windows_mobile:6.0
-
cpe:2.3:o:microsoft:windows_mobile:6.1
-
cpe:2.3:o:microsoft:windows_mobile:6.5
-
cpe:2.3:o:microsoft:windows_mobile:8.0
-
cpe:2.3:o:microsoft:windows_mobile:8.1