High
CVSS 7.8
Overview
Cisco AnyConnect Secure Mobility Client before 4.2.05015 and 4.3.x before 4.3.02039 mishandles pathnames, which allows local users to gain privileges via a crafted INF file, aka Bug ID CSCuz92464.
Cisco AnyConnect Secure Mobility Client before 4.2.05015 and 4.3.x before 4.3.02...
Cisco AnyConnect Secure Mobility Client before 4.2.05015 and 4.3.x before 4.3.02039 mishandles pathnames, which allows local users to gain privileges via a crafted INF file, aka Bug ID CSCuz92464.
This vulnerability is rated 🟠 HIGH.
Recommended actions: