7.8
CVE-2016-9192
- EPSS 31.82%
- Veröffentlicht 14.12.2016 00:59:15
- Zuletzt bearbeitet 12.04.2025 10:46:40
- Quelle psirt@cisco.com
- Teams Watchlist Login
- Unerledigt Login
A vulnerability in Cisco AnyConnect Secure Mobility Client for Windows could allow an authenticated, local attacker to install and execute an arbitrary executable file with privileges equivalent to the Microsoft Windows operating system SYSTEM account. More Information: CSCvb68043. Known Affected Releases: 4.3(2039) 4.3(748). Known Fixed Releases: 4.3(4019) 4.4(225).
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Cisco ≫ Anyconnect Secure Mobility Client Version3.1.0
Cisco ≫ Anyconnect Secure Mobility Client Version3.1.02043
Cisco ≫ Anyconnect Secure Mobility Client Version3.1.05182
Cisco ≫ Anyconnect Secure Mobility Client Version3.1.05187
Cisco ≫ Anyconnect Secure Mobility Client Version3.1.06073
Cisco ≫ Anyconnect Secure Mobility Client Version3.1.07021
Cisco ≫ Anyconnect Secure Mobility Client Version4.0.0
Cisco ≫ Anyconnect Secure Mobility Client Version4.0.00048
Cisco ≫ Anyconnect Secure Mobility Client Version4.0.00051
Cisco ≫ Anyconnect Secure Mobility Client Version4.1.0
Cisco ≫ Anyconnect Secure Mobility Client Version4.2.0
Cisco ≫ Anyconnect Secure Mobility Client Version4.2.04039
Cisco ≫ Anyconnect Secure Mobility Client Version4.3.0
Cisco ≫ Anyconnect Secure Mobility Client Version4.3.00748
Cisco ≫ Anyconnect Secure Mobility Client Version4.3.01095
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Typ | Quelle | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 31.82% | 0.964 |
Quelle | Base Score | Exploit Score | Impact Score | Vector String |
---|---|---|---|---|
nvd@nist.gov | 7.8 | 1.8 | 5.9 |
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
|
nvd@nist.gov | 7.2 | 3.9 | 10 |
AV:L/AC:L/Au:N/C:C/I:C/A:C
|