CVE-2017-12268
published 2017-10-05CVE-2017-12268: A vulnerability in the Network Access Manager (NAM) of Cisco AnyConnect Secure Mobility Client could allow an authenticated, local attacker to enable multiple…
PriorityP429medium6.5CVSS 3.0
AVLACLPRLUINSCCNIHAN
EPSS
0.35%
27.6th percentile
A vulnerability in the Network Access Manager (NAM) of Cisco AnyConnect Secure Mobility Client could allow an authenticated, local attacker to enable multiple network adapters, aka a Dual-Homed Interface vulnerability. The vulnerability is due to insufficient NAM policy enforcement. An attacker could exploit this vulnerability by manipulating network interfaces of the device to allow multiple active network interfaces. A successful exploit could allow the attacker to send traffic over a non-authorized network interface. Cisco Bug IDs: CSCvf66539.
Affected
3 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| artifex | jbig2dec | >= 0 < 0.12+20150918-1ubuntu0.1+esm2 | 0.12+20150918-1ubuntu0.1+esm2 |
| cisco | anyconnect_network_access_manager_dual-homed_interface | — | — |
| cisco | anyconnect_secure_mobility_client | — | — |
CVSS provenance
nvdv3.06.5MEDIUMCVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:C/C:N/I:H/A:N
nvdv2.02.1LOWAV:L/AC:L/Au:N/C:N/I:P/A:N
osv6.5MEDIUM
vendor_cisco5.5MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-ww9q-frhf-2rjg: A vulnerability in the Network Access Manager (NAM) of Cisco AnyConnect Secure Mobility Client could allow an authenticated, local attacker to enable
ghsa_unreviewed·2022-05-13
CVE-2017-12268 [MEDIUM] GHSA-ww9q-frhf-2rjg: A vulnerability in the Network Access Manager (NAM) of Cisco AnyConnect Secure Mobility Client could allow an authenticated, local attacker to enable
A vulnerability in the Network Access Manager (NAM) of Cisco AnyConnect Secure Mobility Client could allow an authenticated, local attacker to enable multiple network adapters, aka a Dual-Homed Interface vulnerability. The vulnerability is due to insufficient NAM policy enforcement. An attacker could exploit this vulnerability by manipulating network interfaces of the device to allow multiple active network interfaces. A successful exploit could allow the attacker to send traffic over a non-authorized network interface. Cisco Bug IDs: CSCvf66539.
OSV
jbig2dec vulnerabilities
osv·2022-05-05·CVSS 6.5
CVE-2017-9216 jbig2dec vulnerabilities
jbig2dec vulnerabilities
It was discovered that jbig2dec incorrectly handled memory when parsing
invalid files. An attacker could use this issue to cause jbig2dec to crash,
leading to a denial of service. (CVE-2017-9216)
It was discovered that jbig2dec incorrectly handled memory when processing
untrusted input. An attacker could use this issue to cause a denial of service,
or possibly execute arbitrary code. (CVE-2020-12268)
Cisco
Cisco AnyConnect Network Access Manager Dual-Homed Interface Vulnerability
vendor_cisco·2017-10-04·CVSS 5.5
CVE-2017-12268 [MEDIUM] CWE-264 Cisco AnyConnect Network Access Manager Dual-Homed Interface Vulnerability
Cisco AnyConnect Network Access Manager Dual-Homed Interface Vulnerability
A vulnerability in the Network Access Manager (NAM) of Cisco AnyConnect Secure Mobility Client could allow an authenticated, local attacker to enable multiple network adapters.
The vulnerability is due to insufficient NAM policy enforcement. An attacker could exploit this vulnerability by manipulating network interfaces of the device to allow multiple active network interfaces. A successful exploit could allow the attacker to send traffic over a non-authorized network interface.
Cisco has released software updates that address this vulnerability. Workarounds that address this vulnerability are not available.
This advisory is available at the following link:
https://sec.cloudapps.cisco.com/security/center/content
Cisco
Cisco AnyConnect Network Access Manager Dual-Homed Interface Vulnerability
vendor_cisco·CVSS 3.0
CVE-2017-12268 Cisco AnyConnect Network Access Manager Dual-Homed Interface Vulnerability
CVE-2017-12268: Cisco AnyConnect Network Access Manager Dual-Homed Interface Vulnerability
A vulnerability in the Network Access Manager (NAM) of Cisco AnyConnect Secure Mobility Client could allow an authenticated, local attacker to enable multiple network adapters. The vulnerability is due to insufficient NAM policy enforcement. An attacker could exploit this vulnerability by manipulating network interfaces of the device to allow multiple active network interfaces. A successful exploit could allow the attacker to send traffic over a non-authorized network interface. Cisco has released software updates that address this vulnerability.
CVSS: 3.0
CWE: CWE-264, CWE-264
Bug IDs: CSCvf66539
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://www.securityfocus.com/bid/101157http://www.securitytracker.com/id/1039507https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20171004-anamhttp://www.securityfocus.com/bid/101157http://www.securitytracker.com/id/1039507https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20171004-anam
2017-10-05
Published