Cisco AnyConnect Secure Mobility Client VPN Downloader Arbitrary Code Execution Vulnerabilities

Bugtraq ID: 54107
Class: Input Validation Error
CVE: CVE-2012-2493
CVE-2012-2496
Remote: Yes
Local: No
Published: Jun 20 2012 12:00AM
Updated: Sep 11 2012 06:50PM
Credit: gwslabs.com via Zero Day Initiative and Cisco
Vulnerable: Cisco AnyConnect Secure Mobility Client 3.0.629
Cisco AnyConnect Secure Mobility Client 3.0
Cisco AnyConnect Secure Mobility Client 2.5.3046
Cisco AnyConnect Secure Mobility Client 2.5.3041
Cisco AnyConnect Secure Mobility Client 2.5
Not Vulnerable:


 

Privacy Statement
Copyright 2010, SecurityFocus