Логотип exploitDog
bind:CVE-2021-40124
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2021-40124

Количество 3

Количество 3

nvd логотип

CVE-2021-40124

больше 4 лет назад

A vulnerability in the Network Access Manager (NAM) module of Cisco AnyConnect Secure Mobility Client for Windows could allow an authenticated, local attacker to escalate privileges on an affected device. This vulnerability is due to incorrect privilege assignment to scripts executed before user logon. An attacker could exploit this vulnerability by configuring a script to be executed before logon. A successful exploit could allow the attacker to execute arbitrary code with SYSTEM privileges.

CVSS3: 6.7
EPSS: Низкий
github логотип

GHSA-x848-mf45-8cv4

больше 3 лет назад

A vulnerability in the Network Access Manager (NAM) module of Cisco AnyConnect Secure Mobility Client for Windows could allow an authenticated, local attacker to escalate privileges on an affected device. This vulnerability is due to incorrect privilege assignment to scripts executed before user logon. An attacker could exploit this vulnerability by configuring a script to be executed before logon. A successful exploit could allow the attacker to execute arbitrary code with SYSTEM privileges.

CVSS3: 7.8
EPSS: Низкий
fstec логотип

BDU:2021-05808

больше 4 лет назад

Уязвимость модуля Network Access Manager средства криптографической защиты Cisco AnyConnect Secure Mobility Client, позволяющая нарушителю повысить свои привилегии и выполнить произвольный код

CVSS3: 6.7
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2021-40124

A vulnerability in the Network Access Manager (NAM) module of Cisco AnyConnect Secure Mobility Client for Windows could allow an authenticated, local attacker to escalate privileges on an affected device. This vulnerability is due to incorrect privilege assignment to scripts executed before user logon. An attacker could exploit this vulnerability by configuring a script to be executed before logon. A successful exploit could allow the attacker to execute arbitrary code with SYSTEM privileges.

CVSS3: 6.7
0%
Низкий
больше 4 лет назад
github логотип
GHSA-x848-mf45-8cv4

A vulnerability in the Network Access Manager (NAM) module of Cisco AnyConnect Secure Mobility Client for Windows could allow an authenticated, local attacker to escalate privileges on an affected device. This vulnerability is due to incorrect privilege assignment to scripts executed before user logon. An attacker could exploit this vulnerability by configuring a script to be executed before logon. A successful exploit could allow the attacker to execute arbitrary code with SYSTEM privileges.

CVSS3: 7.8
0%
Низкий
больше 3 лет назад
fstec логотип
BDU:2021-05808

Уязвимость модуля Network Access Manager средства криптографической защиты Cisco AnyConnect Secure Mobility Client, позволяющая нарушителю повысить свои привилегии и выполнить произвольный код

CVSS3: 6.7
0%
Низкий
больше 4 лет назад

Уязвимостей на страницу