Vulnerabilities
Vulnerable Software
Cisco AnyConnect Secure Mobility Client before 4.2.05015 and 4.3.x before 4.3.02039 mishandles pathnames, which allows local users to gain privileges via a crafted INF file, aka Bug ID CSCuz92464.
CVSS Score
7.8
EPSS Score
0.001
Published
2016-08-25
The IPC channel in Cisco AnyConnect Secure Mobility Client 2.0.0343 through 4.1(8) allows local users to bypass intended access restrictions and move arbitrary files by leveraging the lack of source-path validation, aka Bug ID CSCuv48563.
CVSS Score
6.6
EPSS Score
0.001
Published
2015-10-12


Contact Us

Shodan ® - All rights reserved