Lucene search

K
cveMitreCVE-2007-1065
HistoryFeb 22, 2007 - 1:28 a.m.

CVE-2007-1065

2007-02-2201:28:00
mitre
web.nvd.nist.gov
36
cisco
cssc
trust agent
csa
security
vulnerability
privilege escalation
meetinghouse aegis
nvd
cve-2007-1065

CVSS2

6.8

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

SINGLE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:L/Au:S/C:C/I:C/A:C

AI Score

6.5

Confidence

Low

EPSS

0.001

Percentile

26.1%

Cisco Secure Services Client (CSSC) 4.x, Trust Agent 1.x and 2.x, Cisco Security Agent (CSA) 5.0 and 5.1 (when a vulnerable Trust Agent has been deployed), and the Meetinghouse AEGIS SecureConnect Client allows local users to gain SYSTEM privileges via unspecified vectors in the supplicant, aka CSCsf15836.

Affected configurations

Nvd
Node
ciscosecure_services_clientMatch4.0
OR
ciscosecure_services_clientMatch4.0.5
OR
ciscosecure_services_clientMatch4.0.51
OR
ciscosecurity_agentMatch5.0
OR
ciscosecurity_agentMatch5.1
OR
ciscotrust_agentMatch1.0
OR
ciscotrust_agentMatch2.0
OR
ciscotrust_agentMatch2.0.1
OR
ciscotrust_agentMatch2.1
OR
meetinghouseaegis_secureconnect_clientMatchwindows_platform
VendorProductVersionCPE
ciscosecure_services_client4.0cpe:2.3:a:cisco:secure_services_client:4.0:*:*:*:*:*:*:*
ciscosecure_services_client4.0.5cpe:2.3:a:cisco:secure_services_client:4.0.5:*:*:*:*:*:*:*
ciscosecure_services_client4.0.51cpe:2.3:a:cisco:secure_services_client:4.0.51:*:*:*:*:*:*:*
ciscosecurity_agent5.0cpe:2.3:a:cisco:security_agent:5.0:*:*:*:*:*:*:*
ciscosecurity_agent5.1cpe:2.3:a:cisco:security_agent:5.1:*:*:*:*:*:*:*
ciscotrust_agent1.0cpe:2.3:a:cisco:trust_agent:1.0:*:*:*:*:*:*:*
ciscotrust_agent2.0cpe:2.3:a:cisco:trust_agent:2.0:*:*:*:*:*:*:*
ciscotrust_agent2.0.1cpe:2.3:a:cisco:trust_agent:2.0.1:*:*:*:*:*:*:*
ciscotrust_agent2.1cpe:2.3:a:cisco:trust_agent:2.1:*:*:*:*:*:*:*
meetinghouseaegis_secureconnect_clientwindows_platformcpe:2.3:a:meetinghouse:aegis_secureconnect_client:windows_platform:*:*:*:*:*:*:*

CVSS2

6.8

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

SINGLE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:L/Au:S/C:C/I:C/A:C

AI Score

6.5

Confidence

Low

EPSS

0.001

Percentile

26.1%