CVE-2012-2500
published 2012-08-06CVE-2012-2500: Cisco AnyConnect Secure Mobility Client 3.0 before 3.0.08057 does not verify the certificate name in an X.509 certificate during WebLaunch of IPsec, which…
PriorityP414medium4CVSS 2.0
AVNACHAuNCPIPAN
EPSS
0.46%
37.1th percentile
Cisco AnyConnect Secure Mobility Client 3.0 before 3.0.08057 does not verify the certificate name in an X.509 certificate during WebLaunch of IPsec, which allows man-in-the-middle attackers to spoof servers via a crafted certificate, aka Bug ID CSCtz29470.
Affected
3 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| cisco | anyconnect_secure_mobility_client | — | — |
| cisco | anyconnect_secure_mobility_client | — | — |
| cisco | anyconnect_secure_mobility_client | — | — |
CVSS provenance
nvdv2.04.0MEDIUMAV:N/AC:H/Au:N/C:P/I:P/A:N
vendor_cisco4.0MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-pcm4-7w5w-hxc6: Cisco AnyConnect Secure Mobility Client 3
ghsa_unreviewed·2022-05-17
CVE-2012-2500 [MEDIUM] GHSA-pcm4-7w5w-hxc6: Cisco AnyConnect Secure Mobility Client 3
Cisco AnyConnect Secure Mobility Client 3.0 before 3.0.08057 does not verify the certificate name in an X.509 certificate during WebLaunch of IPsec, which allows man-in-the-middle attackers to spoof servers via a crafted certificate, aka Bug ID CSCtz29470.
Cisco
Cisco AnyConnect Secure Mobility Client WebLaunch Session Hijack Vulnerability
vendor_cisco·2012-08-09·CVSS 4.0
CVE-2012-2500 [MEDIUM] CWE-310 Cisco AnyConnect Secure Mobility Client WebLaunch Session Hijack Vulnerability
Cisco AnyConnect Secure Mobility Client WebLaunch Session Hijack Vulnerability
Cisco AnyConnect Secure Mobility Client contains a vulnerability that could allow an unauthenticated, remote attacker to hijack WebLaunch sessions, which could allow the attacker to intercept sensitive information.
The vulnerability is due to the failure to perform certificate name checking in an X.509 certificate while using the WebLaunch feature. An unauthenticated, remote attacker could exploit the vulnerability by convincing a user to visit a malicious web page that accepts a crafted X.509 certificate. If successful, the attacker could intercept WebLaunch sessions, which could result in the disclosure of sensitive information that could be used to conduct further attacks.
Cisco has confirmed this vulnerab
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2012-08-06
Published