- EPSS 15.54%
- Published 19.02.2011 01:00:02
- Last modified 11.04.2025 00:51:21
The Management Console (webagent.exe) in Cisco Security Agent 5.1, 5.2, and 6.0 before 6.0.2.145 allows remote attackers to create arbitrary files and execute arbitrary code via unspecified parameters in a crafted st_upload request.
CVE-2010-0146
- EPSS 0.44%
- Published 23.02.2010 20:30:00
- Last modified 11.04.2025 00:51:21
Directory traversal vulnerability in the Management Center for Cisco Security Agents 6.0 allows remote authenticated users to read arbitrary files via unspecified vectors.
CVE-2010-0147
- EPSS 0.58%
- Published 23.02.2010 20:30:00
- Last modified 11.04.2025 00:51:21
SQL injection vulnerability in the Management Center for Cisco Security Agents 5.1 before 5.1.0.117, 5.2 before 5.2.0.296, and 6.0 before 6.0.1.132 allows remote authenticated users to execute arbitrary SQL commands via unspecified vectors.
CVE-2010-0148
- EPSS 1.33%
- Published 23.02.2010 20:30:00
- Last modified 11.04.2025 00:51:21
Unspecified vulnerability in Cisco Security Agent 5.2 before 5.2.0.285, when running on Linux, allows remote attackers to cause a denial of service (kernel panic) via "a series of TCP packets."
- EPSS 16.47%
- Published 15.12.2007 01:46:00
- Last modified 09.04.2025 00:30:58
Buffer overflow in a certain driver in Cisco Security Agent 4.5.1 before 4.5.1.672, 5.0 before 5.0.0.225, 5.1 before 5.1.0.106, and 5.2 before 5.2.0.238 on Windows allows remote attackers to execute arbitrary code via a crafted SMB packet in a TCP se...
CVE-2007-1064
- EPSS 0.07%
- Published 22.02.2007 01:28:00
- Last modified 09.04.2025 00:30:58
Cisco Secure Services Client (CSSC) 4.x, Trust Agent 1.x and 2.x, Cisco Security Agent (CSA) 5.0 and 5.1 (when a vulnerable Trust Agent has been deployed), and the Meetinghouse AEGIS SecureConnect Client do not drop privileges when the help facility ...
CVE-2007-1065
- EPSS 0.07%
- Published 22.02.2007 01:28:00
- Last modified 09.04.2025 00:30:58
Cisco Secure Services Client (CSSC) 4.x, Trust Agent 1.x and 2.x, Cisco Security Agent (CSA) 5.0 and 5.1 (when a vulnerable Trust Agent has been deployed), and the Meetinghouse AEGIS SecureConnect Client allows local users to gain SYSTEM privileges v...
CVE-2007-1066
- EPSS 0.07%
- Published 22.02.2007 01:28:00
- Last modified 09.04.2025 00:30:58
Cisco Secure Services Client (CSSC) 4.x, Trust Agent 1.x and 2.x, Cisco Security Agent (CSA) 5.0 and 5.1 (when a vulnerable Trust Agent has been deployed), and the Meetinghouse AEGIS SecureConnect Client use an insecure default Discretionary Access C...
CVE-2007-1067
- EPSS 0.08%
- Published 22.02.2007 01:28:00
- Last modified 09.04.2025 00:30:58
Cisco Secure Services Client (CSSC) 4.x, Trust Agent 1.x and 2.x, Cisco Security Agent (CSA) 5.0 and 5.1 (when a vulnerable Trust Agent has been deployed), and the Meetinghouse AEGIS SecureConnect Client do not properly parse commands, which allows l...
CVE-2007-1068
- EPSS 0.09%
- Published 22.02.2007 01:28:00
- Last modified 09.04.2025 00:30:58
The (1) TTLS CHAP, (2) TTLS MSCHAP, (3) TTLS MSCHAPv2, (4) TTLS PAP, (5) MD5, (6) GTC, (7) LEAP, (8) PEAP MSCHAPv2, (9) PEAP GTC, and (10) FAST authentication methods in Cisco Secure Services Client (CSSC) 4.x, Trust Agent 1.x and 2.x, Cisco Security...