cbcvebase.

Cisco Anyconnect Secure Mobility Client vulnerabilities

66 known vulnerabilities affecting cisco/anyconnect_secure_mobility_client.

Total CVEs
66
CISA KEV
2
actively exploited
Public exploits
8
Exploited in wild
2
Severity breakdown
CRITICAL3HIGH26MEDIUM36LOW1

Vulnerabilities

Page 1 of 4
CVE-2020-3153P1MEDIUMCVSS 6.5KEVPoCRansomwarefixed in 4.8.020422020-02-19
CVE-2020-3153 [MEDIUM] CWE-427 CVE-2020-3153: A vulnerability in the installer component of Cisco AnyConnect Secure Mobility Client for Windows co A vulnerability in the installer component of Cisco AnyConnect Secure Mobility Client for Windows could allow an authenticated local attacker to copy user-supplied files to system level directories with system level privileges. The vulnerability is due to the incorrect handling of directory paths. An attacker could exploit this vulnerability by creati
nvd
CVE-2020-3433P1HIGHCVSS 7.8KEVPoCRansomwarefixed in 4.9.000862020-08-17
CVE-2020-3433 [HIGH] CWE-427 CVE-2020-3433: A vulnerability in the interprocess communication (IPC) channel of Cisco AnyConnect Secure Mobility A vulnerability in the interprocess communication (IPC) channel of Cisco AnyConnect Secure Mobility Client for Windows could allow an authenticated, local attacker to perform a DLL hijacking attack. To exploit this vulnerability, the attacker would need to have valid credentials on the Windows system. The vulnerability is due to insufficient validation o
nvd
CVE-2011-2039P2HIGHCVSS 7.6PoC≤ 2.3v2.0+6 more2011-06-02
CVE-2011-2039 [HIGH] CWE-20 CVE-2011-2039: The helper application in Cisco AnyConnect Secure Mobility Client (formerly AnyConnect VPN Client) b The helper application in Cisco AnyConnect Secure Mobility Client (formerly AnyConnect VPN Client) before 2.3.185 on Windows, and on Windows Mobile, downloads a client executable file (vpndownloader.exe) without verifying its authenticity, which allows remote attackers to execute arbitrary code via the url property to a certain ActiveX control in vpnweb.
nvd
CVE-2017-3813P3HIGHCVSS 7.8PoCv4.0.00048v4.0.00051+23 more2017-02-09
CVE-2017-3813 [HIGH] CWE-264 CVE-2017-3813: A vulnerability in the Start Before Logon (SBL) module of Cisco AnyConnect Secure Mobility Client So A vulnerability in the Start Before Logon (SBL) module of Cisco AnyConnect Secure Mobility Client Software for Windows could allow an unauthenticated, local attacker to open Internet Explorer with the privileges of the SYSTEM user. The vulnerability is due to insufficient implementation of the access controls. An attacker could exploit this vulnerabilit
nvd
CVE-2011-2040P3CRITICALCVSS 9.3≤ 2.5.2019v2.0+23 more2011-06-02
CVE-2011-2040 [CRITICAL] CWE-20 CVE-2011-2040: The helper application in Cisco AnyConnect Secure Mobility Client (formerly AnyConnect VPN Client) b The helper application in Cisco AnyConnect Secure Mobility Client (formerly AnyConnect VPN Client) before 2.5.3041, and 3.0.x before 3.0.629, on Linux and Mac OS X downloads a client executable file (vpndownloader.exe) without verifying its authenticity, which allows remote attackers to execute arbitrary code via the url property to a Java applet, ak
nvd
CVE-2015-4211P3HIGHCVSS 7.2PoCv3.1\(60\)2015-06-24
CVE-2015-4211 [HIGH] CWE-264 CVE-2015-4211: Cisco AnyConnect Secure Mobility Client 3.1(60) on Windows does not properly validate pathnames, whi Cisco AnyConnect Secure Mobility Client 3.1(60) on Windows does not properly validate pathnames, which allows local users to gain privileges via a crafted INF file, aka Bug ID CSCus65862.
nvd
CVE-2015-6306P3HIGHCVSS 7.2PoCv4.1.\(8\)2015-09-26
CVE-2015-6306 [HIGH] CWE-264 CVE-2015-6306: Cisco AnyConnect Secure Mobility Client 4.1(8) on OS X and Linux does not verify pathnames before in Cisco AnyConnect Secure Mobility Client 4.1(8) on OS X and Linux does not verify pathnames before installation actions, which allows local users to obtain root privileges via a crafted installation file, aka Bug ID CSCuv11947.
nvd
CVE-2015-6305P3HIGHCVSS 7.2PoCv2.0.0343v2.1.0.148+49 more2015-09-26
CVE-2015-6305 [HIGH] CVE-2015-6305: Untrusted search path vulnerability in the CMainThread::launchDownloader function in vpndownloader.e Untrusted search path vulnerability in the CMainThread::launchDownloader function in vpndownloader.exe in Cisco AnyConnect Secure Mobility Client 2.0 through 4.1 on Windows allows local users to gain privileges via a Trojan horse DLL in the current working directory, as demonstrated by dbghelp.dll, aka Bug ID CSCuv01279. NOTE: this vulnerability exists because
nvd
CVE-2012-2493P3CRITICALCVSS 9.3v2.0v2.1+14 more2012-06-20
CVE-2012-2493 [CRITICAL] CWE-20 CVE-2012-2493: The VPN downloader implementation in the WebLaunch feature in Cisco AnyConnect Secure Mobility Clien The VPN downloader implementation in the WebLaunch feature in Cisco AnyConnect Secure Mobility Client 2.x before 2.5 MR6 on Windows, and 2.x before 2.5 MR6 and 3.x before 3.0 MR8 on Mac OS X and Linux, does not properly validate binaries that are received by the downloader process, which allows remote attackers to execute arbitrary code via vectors i
nvd
CVE-2023-20178P3HIGHCVSS 7.8fixed in 4.10.070612023-06-28
CVE-2023-20178 [HIGH] CWE-276 CVE-2023-20178: A vulnerability in the client update process of Cisco AnyConnect Secure Mobility Client Software for A vulnerability in the client update process of Cisco AnyConnect Secure Mobility Client Software for Windows and Cisco Secure Client Software for Windows could allow a low-privileged, authenticated, local attacker to elevate privileges to those of SYSTEM. The client update process is executed after a successful VPN connection is established. This vuln
nvd
CVE-2020-3434P4MEDIUMCVSS 5.5PoC≤ 4.9.000862020-08-17
CVE-2020-3434 [MEDIUM] CWE-20 CVE-2020-3434: A vulnerability in the interprocess communication (IPC) channel of Cisco AnyConnect Secure Mobility A vulnerability in the interprocess communication (IPC) channel of Cisco AnyConnect Secure Mobility Client for Windows could allow an authenticated, local attacker to cause a denial of service (DoS) condition on an affected device. To exploit this vulnerability, the attacker would need to have valid credentials on the Windows system. The vulnerability i
nvd
CVE-2019-1853P3HIGHCVSS 7.5v4.6\(2074\)2019-05-16
CVE-2019-1853 [HIGH] CWE-125 CVE-2019-1853: A vulnerability in the HostScan component of Cisco AnyConnect Secure Mobility Client for Linux could A vulnerability in the HostScan component of Cisco AnyConnect Secure Mobility Client for Linux could allow an unauthenticated, remote attacker to read sensitive information on an affected system. The vulnerability exists because the affected software performs improper bounds checks. An attacker could exploit this vulnerability by crafting HTTP traffic f
nvd
CVE-2021-1366P3HIGHCVSS 7.8fixed in 4.9.050422021-02-17
CVE-2021-1366 [HIGH] CWE-347 CVE-2021-1366: A vulnerability in the interprocess communication (IPC) channel of Cisco AnyConnect Secure Mobility A vulnerability in the interprocess communication (IPC) channel of Cisco AnyConnect Secure Mobility Client for Windows could allow an authenticated, local attacker to perform a DLL hijacking attack on an affected device if the VPN Posture (HostScan) Module is installed on the AnyConnect client. This vulnerability is due to insufficient validation of reso
nvd
CVE-2021-1496P3HIGHCVSS 7.8fixed in 4.9.030222021-05-06
CVE-2021-1496 [HIGH] CWE-378 CVE-2021-1496: Multiple vulnerabilities in the install, uninstall, and upgrade processes of Cisco AnyConnect Secure Multiple vulnerabilities in the install, uninstall, and upgrade processes of Cisco AnyConnect Secure Mobility Client for Windows could allow an authenticated, local attacker to hijack DLL or executable files that are used by the application. A successful exploit could allow the attacker to execute arbitrary code on an affected device with SYSTEM privile
nvd
CVE-2016-9192P3HIGHCVSS 7.8v3.1\(60\)v3.1.0+18 more2016-12-14
CVE-2016-9192 [HIGH] CWE-264 CVE-2016-9192: A vulnerability in Cisco AnyConnect Secure Mobility Client for Windows could allow an authenticated, A vulnerability in Cisco AnyConnect Secure Mobility Client for Windows could allow an authenticated, local attacker to install and execute an arbitrary executable file with privileges equivalent to the Microsoft Windows operating system SYSTEM account. More Information: CSCvb68043. Known Affected Releases: 4.3(2039) 4.3(748). Known Fixed Releases: 4.3(4
nvd
CVE-2021-1237P3HIGHCVSS 7.8fixed in 4.9.040432021-01-13
CVE-2021-1237 [HIGH] CWE-427 CVE-2021-1237: A vulnerability in the Network Access Manager and Web Security Agent components of Cisco AnyConnect A vulnerability in the Network Access Manager and Web Security Agent components of Cisco AnyConnect Secure Mobility Client for Windows could allow an authenticated, local attacker to perform a DLL injection attack. To exploit this vulnerability, the attacker would need to have valid credentials on the Windows system. The vulnerability is due to insuffici
nvd
CVE-2021-1426P3HIGHCVSS 7.8fixed in 4.9.060372021-05-06
CVE-2021-1426 [HIGH] CWE-378 CVE-2021-1426: Multiple vulnerabilities in the install, uninstall, and upgrade processes of Cisco AnyConnect Secure Multiple vulnerabilities in the install, uninstall, and upgrade processes of Cisco AnyConnect Secure Mobility Client for Windows could allow an authenticated, local attacker to hijack DLL or executable files that are used by the application. A successful exploit could allow the attacker to execute arbitrary code on an affected device with SYSTEM privile
nvd
CVE-2021-1429P3HIGHCVSS 7.8fixed in 4.10.000932021-05-06
CVE-2021-1429 [HIGH] CWE-378 CVE-2021-1429: Multiple vulnerabilities in the install, uninstall, and upgrade processes of Cisco AnyConnect Secure Multiple vulnerabilities in the install, uninstall, and upgrade processes of Cisco AnyConnect Secure Mobility Client for Windows could allow an authenticated, local attacker to hijack DLL or executable files that are used by the application. A successful exploit could allow the attacker to execute arbitrary code on an affected device with SYSTEM privile
nvd
CVE-2021-1427P3HIGHCVSS 7.8fixed in 4.9.060372021-05-06
CVE-2021-1427 [HIGH] CWE-378 CVE-2021-1427: Multiple vulnerabilities in the install, uninstall, and upgrade processes of Cisco AnyConnect Secure Multiple vulnerabilities in the install, uninstall, and upgrade processes of Cisco AnyConnect Secure Mobility Client for Windows could allow an authenticated, local attacker to hijack DLL or executable files that are used by the application. A successful exploit could allow the attacker to execute arbitrary code on an affected device with SYSTEM privile
nvd
CVE-2021-1428P3HIGHCVSS 7.8fixed in 4.10.000932021-05-06
CVE-2021-1428 [HIGH] CWE-378 CVE-2021-1428: Multiple vulnerabilities in the install, uninstall, and upgrade processes of Cisco AnyConnect Secure Multiple vulnerabilities in the install, uninstall, and upgrade processes of Cisco AnyConnect Secure Mobility Client for Windows could allow an authenticated, local attacker to hijack DLL or executable files that are used by the application. A successful exploit could allow the attacker to execute arbitrary code on an affected device with SYSTEM privile
nvd
Cisco Anyconnect Secure Mobility Client vulnerabilities | cvebase