Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Cisco AnyConnect Secure Mobility Client 4.1(8) on OS X and Linux does not verify pathnames before installation actions, which allows local users to obtain root privileges via a crafted installation file, aka Bug ID CSCuv11947.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Cisco AnyConnect Secure Mobility Client 权限许可和访问控制漏洞
Vulnerability Description
Cisco AnyConnect Secure Mobility Client是美国思科(Cisco)公司的一款可通过任何设备安全访问网络和应用的安全移动客户端。 基于OS X和Linux平台的Cisco AnyConnect Secure Mobility Client 4.1(8)版本中存在安全漏洞,该漏洞源于程序执行安装操作前没有验证路径名。本地攻击者可借助特制的安装文件利用该漏洞获取root权限。
CVSS Information
N/A
Vulnerability Type
N/A