CVE-2007-1067
published 2007-02-22CVE-2007-1067: Cisco Secure Services Client (CSSC) 4.x, Trust Agent 1.x and 2.x, Cisco Security Agent (CSA) 5.0 and 5.1 (when a vulnerable Trust Agent has been deployed), and…
PriorityP426high7.2CVSS 2.0
AVLACLAuNCCICAC
EPSS
0.33%
25.4th percentile
Cisco Secure Services Client (CSSC) 4.x, Trust Agent 1.x and 2.x, Cisco Security Agent (CSA) 5.0 and 5.1 (when a vulnerable Trust Agent has been deployed), and the Meetinghouse AEGIS SecureConnect Client do not properly parse commands, which allows local users to gain privileges via unspecified vectors, aka CSCsh30624.
Affected
5 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| cisco | secure_services_client | — | — |
| cisco | security_agent | — | — |
| cisco | security_agent | — | — |
| cisco | trust_agent | — | — |
| meetinghouse | aegis_secureconnect_client | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://osvdb.org/33045http://secunia.com/advisories/24258http://www.cisco.com/warp/public/707/cisco-sa-20070221-supplicant.shtmlhttp://www.securityfocus.com/bid/22648http://www.securitytracker.com/id?1017683http://www.securitytracker.com/id?1017684http://www.vupen.com/english/advisories/2007/0690https://exchange.xforce.ibmcloud.com/vulnerabilities/32624http://osvdb.org/33045http://secunia.com/advisories/24258http://www.cisco.com/warp/public/707/cisco-sa-20070221-supplicant.shtmlhttp://www.securityfocus.com/bid/22648http://www.securitytracker.com/id?1017683http://www.securitytracker.com/id?1017684http://www.vupen.com/english/advisories/2007/0690https://exchange.xforce.ibmcloud.com/vulnerabilities/32624
2007-02-22
Published