CVE-2009-5007: Low severity cisco anyconnect secure vulnerability
The Cisco trial client on Linux for Cisco AnyConnect SSL VPN allows local users to overwrite arbitrary files via a symlink attack on unspecified temporary files.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2009-5007?
CVE-2009-5007 is classified as a high severity vulnerability due to its potential to allow local users to exploit a symlink attack to overwrite arbitrary files.
How do I fix CVE-2009-5007?
To fix CVE-2009-5007, ensure that you do not have the affected Cisco AnyConnect SSL VPN trial client installed or apply any available patches from Cisco.
Who is affected by CVE-2009-5007?
CVE-2009-5007 affects local users of the Cisco AnyConnect SSL VPN trial client on Linux.
What type of attack is associated with CVE-2009-5007?
CVE-2009-5007 is associated with a symlink attack which allows local users to overwrite arbitrary files.
Is CVE-2009-5007 a remote vulnerability?
No, CVE-2009-5007 is not a remote vulnerability; it requires local user access to exploit.