First published: Wed Jun 07 2023(Updated: )
A vulnerability in the client update process of Cisco AnyConnect Secure Mobility Client Software for Windows and Cisco Secure Client Software for Windows could allow a low-privileged, authenticated, local attacker to elevate privileges to those of SYSTEM. The client update process is executed
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco AnyConnect Secure | ||
Cisco Secure Client - AnyConnect VPN |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of cisco-sa-ac-csc-privesc-wx4U4Kw is considered high due to the potential for privilege escalation.
To fix cisco-sa-ac-csc-privesc-wx4U4Kw, ensure that you update to the latest version of Cisco AnyConnect Secure Mobility Client or Cisco Secure Client.
Users of Cisco AnyConnect Secure Mobility Client and Cisco Secure Client on Windows systems are affected by cisco-sa-ac-csc-privesc-wx4U4Kw.
cisco-sa-ac-csc-privesc-wx4U4Kw is a local privilege escalation vulnerability.
No, an attacker must have local access and be authenticated to exploit cisco-sa-ac-csc-privesc-wx4U4Kw.