Cisco AnyConnect Secure Mobility Client 3.1.08009 Privilege Elevation

Discussion in 'News Aggregator' started by Packet Storm, 6 Oct 2015.

  1. Packet Storm

    Packet Storm Guest

    Cisco AnyConnect Secure Mobility Client version 3.1.08009 suffers from a privilege escalation vulnerability. The fix for CVE-2015-4211 is insufficient which allows a local application to elevate to local system through the CMainThread::launchDownloader command.

    Continue reading...
     

Share This Page

Loading...