Vulnslist

find the latest Cisco vulnerabilities

CVE-2015-6306

Cisco AnyConnect Secure Mobility Client 4.1(8) on OS X and Linux does not verify pathnames before installation actions, which allows local users to obtain root privileges via a crafted installation file, aka Bug ID CSCuv11947.

SeverityHIGH
CVSS7.2
CWECWE-264
KEV
Published
Modified

Related Products

Product Advisory
Cisco Secure Client Cisco-SA-20150923-CVE-2015-6306
Cisco AnyConnect Secure Mobility Client Cisco-SA-20150923-CVE-2015-6306