cbcvebase.
CVE-2015-6306
published 2015-09-26

CVE-2015-6306: Cisco AnyConnect Secure Mobility Client 4.1(8) on OS X and Linux does not verify pathnames before installation actions, which allows local users to obtain root…

high7.2CVSS 3.1
AVLACLAuNCCICAC
EXPLOIT
Cisco AnyConnect Secure Mobility Client 4.1(8) on OS X and Linux does not verify pathnames before installation actions, which allows local users to obtain root privileges via a crafted installation file, aka Bug ID CSCuv11947.

Affected

1 ranges
VendorProductVersion rangeFixed in
ciscoanyconnect_secure_mobility_client