Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The helper application in Cisco AnyConnect Secure Mobility Client (formerly AnyConnect VPN Client) before 2.5.3041, and 3.0.x before 3.0.629, on Linux and Mac OS X downloads a client executable file (vpndownloader.exe) without verifying its authenticity, which allows remote attackers to execute arbitrary code via the url property to a Java applet, aka Bug ID CSCsy05934.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Cisco AnyConnect Secure Mobility Client helper应用程序任意代码执行漏洞
Vulnerability Description
基于Linux和Mac OS X平台的Cisco AnyConnect Secure Mobility Client(之前名为AnyConnect VPN Client)2.5.3041之前版本和3.0.629之前的3.0.x版本中的helper应用程序下载了客户端可执行文件,而未验证该文件的可靠性。远程攻击者可以通过欺骗VPN前端服务器执行任意代码。
CVSS Information
N/A
Vulnerability Type
N/A