Security
Loading…

CVE-2020-3153

UNKNOWNKnown Exploited
Description

Cisco AnyConnect Secure Mobility Client for Windows allows for incorrect handling of directory paths. An attacker with valid credentials on Windows would be able to copy malicious files to arbitrary locations with system level privileges. This could include DLL pre-loading, DLL hijacking, and other related attacks.

Timeline
Published:October 24th, 2022 12:00 AM
Last modified:October 24th, 2022 12:00 AM
Added to KEV:October 24th, 2022
CVSS Scoring

No CVSS v3 score available

Affected Software
From NVD CPE configuration data

Vendors

Cisco

Products

AnyConnect Secure
Weaknesses (CWE)
References & Reports
Advisories, patches, and third-party reports

No references available.

Source: CISA KEV + NVD · Data may lag official sources by up to one minute