Vulnerabilities
Vulnerable Software
Cisco:  >> Vpn Client  >> 5.0.2  Security Vulnerabilities
Cisco VPN Client 5.x through 5.0.07.0440 uses weak permissions for vpnclient.ini, which allows local users to gain privileges by entering an arbitrary program name in the Command field of the ApplicationLauncher section.
CVSS Score
7.2
EPSS Score
0.003
Published
2015-10-06
The VPN driver in Cisco VPN Client on Windows does not properly interact with the kernel, which allows local users to cause a denial of service (kernel fault and system crash) via a crafted application, aka Bug ID CSCuc81669.
CVSS Score
4.6
EPSS Score
0.001
Published
2013-01-17
Untrusted search path vulnerability in Cisco VPN Client 5.0 allows local users to gain privileges via a Trojan horse DLL in the current working directory, aka Bug ID CSCua28747.
CVSS Score
6.9
EPSS Score
0.001
Published
2012-09-16
dne2000.sys in Citrix Deterministic Network Enhancer (DNE) 2.21.7.233 through 3.21.7.17464, as used in (1) Cisco VPN Client, (2) Blue Coat WinProxy, and (3) SafeNet SoftRemote and HighAssurance Remote, allows local users to gain privileges via a crafted DNE_IOCTL DeviceIoControl request to the \\.\DNE device interface.
CVSS Score
7.2
EPSS Score
0.003
Published
2008-11-18


Contact Us

Shodan ® - All rights reserved