POC code for CVE-2020-3153 - Cisco anyconnect path traversal vulnerability
# CVE-2020-3153
POC code for CVE-2020-3153 - Cisco anyconnect path traversal vulnerability
Read more about the vulnerability here: https://ssd-disclosure.com/ssd-advisory-cisco-anyconnect-privilege-elevation-through-path-traversal/
Steps to follow to get Windows shell on desktop with `SYSTEM` privilege:
1) In file `class1.cs`, Change the Username string to your user account directory in `CAC-nc-install` commandline parameter.
2) Create directory path "`Program Files (x86)/Cisco/Cisco AnyConnect Secure Mobility Client/Plugins/`" inside your userhome.
3) Copy actoast.dll on the above path.
## POC demo video
[](https://www.youtube.com/watch?v=7mjByDCeKBw)
Follow my work at: https://nixhacker.com
Log in to view the POC file snapshot cached by Shenlong Bot
Log in to view