CVE-2015-0662Cisco Anyconnect Secure Mobility Client vulnerability

CWE-2644 documents4 sources
Severity
7.2HIGHNVD
EPSS
0.1%
top 75.48%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedMar 17
Latest updateMay 17

Description

Cisco AnyConnect Secure Mobility Client 4.0(.00051) and earlier allows local users to gain privileges via crafted IPC messages that trigger use of root privileges for a software-package installation, aka Bug ID CSCus79385.

CVSS vector

AV:L/AC:L/C:C/I:C/A:CExploitability: 3.9 | Impact: 10.0

Affected Packages1 packages

🔴Vulnerability Details

2
GHSA
GHSA-8mmq-h9pm-f2cr: Cisco AnyConnect Secure Mobility Client 42022-05-17
CVEList
CVE-2015-0662: Cisco AnyConnect Secure Mobility Client 42015-03-17

📋Vendor Advisories

1
Cisco
Cisco AnyConnect Secure Mobility Client Arbitrary Code Execution Vulnerability2015-03-14
CVE-2015-0662 — Cisco vulnerability | cvebase