First published: Sat Aug 18 2007(Updated: )
Cisco VPN Client on Windows before 5.0.01.0600, and the 5.0.01.0600 InstallShield (IS) release, uses weak permissions for cvpnd.exe (Modify granted to Interactive Users), which allows local users to gain privileges via a modified cvpnd.exe.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco VPN Client | <=5.0.01 | |
Cisco VPN Client | =5.0.01.0600 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.