CVE-2015-6305: High severity cisco anyconnect secure vulnerability
Untrusted search path vulnerability in the CMainThread::launchDownloader function in vpndownloader.exe in Cisco AnyConnect Secure Mobility Client 2.0 through 4.1 on Windows allows local users to gain privileges via a Trojan horse DLL in the current working directory, as demonstrated by dbghelp.dll, aka Bug ID CSCuv01279. NOTE: this vulnerability exists because of an incomplete fix for CVE-2015-4211.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2015-6305?
CVE-2015-6305 is considered a medium severity vulnerability that allows local users to gain elevated privileges.
How do I fix CVE-2015-6305?
To fix CVE-2015-6305, ensure that you update Cisco AnyConnect Secure Mobility Client to the latest version provided by Cisco.
Which versions of Cisco AnyConnect are affected by CVE-2015-6305?
CVE-2015-6305 affects Cisco AnyConnect Secure Mobility Client versions ranging from 2.0 through 4.1.
Can CVE-2015-6305 be exploited remotely?
No, CVE-2015-6305 requires local access to the vulnerable system to exploit the untrusted search path vulnerability.
What is the impact of CVE-2015-6305 on affected systems?
The impact of CVE-2015-6305 allows local users to execute a Trojan horse DLL in the current working directory, leading to potential privilege escalation.