Lucene search

K
cveCiscoCVE-2015-0761
HistoryJun 04, 2015 - 10:59 a.m.

CVE-2015-0761

2015-06-0410:59:01
CWE-264
cisco
web.nvd.nist.gov
24
cisco anyconnect
secure mobility client
linux
root privileges
bug id cscus86790
cve-2015-0761
nvd

CVSS2

7.2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:L/Au:N/C:C/I:C/A:C

AI Score

6.5

Confidence

Low

EPSS

0

Percentile

5.1%

Cisco AnyConnect Secure Mobility Client before 3.1(8009) and 4.x before 4.0(2052) on Linux does not properly implement unspecified internal functions, which allows local users to obtain root privileges via crafted vpnagent options, aka Bug ID CSCus86790.

Affected configurations

Nvd
Node
ciscoanyconnect_secure_mobility_clientRange3.1\(.07021\)
OR
ciscoanyconnect_secure_mobility_clientMatch4.0\(.00048\)
OR
ciscoanyconnect_secure_mobility_clientMatch4.0\(.00051\)
VendorProductVersionCPE
ciscoanyconnect_secure_mobility_client*cpe:2.3:a:cisco:anyconnect_secure_mobility_client:*:*:*:*:*:*:*:*
ciscoanyconnect_secure_mobility_client4.0(.00048)cpe:2.3:a:cisco:anyconnect_secure_mobility_client:4.0\(.00048\):*:*:*:*:*:*:*
ciscoanyconnect_secure_mobility_client4.0(.00051)cpe:2.3:a:cisco:anyconnect_secure_mobility_client:4.0\(.00051\):*:*:*:*:*:*:*

CVSS2

7.2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:L/Au:N/C:C/I:C/A:C

AI Score

6.5

Confidence

Low

EPSS

0

Percentile

5.1%

Related for CVE-2015-0761