vendor:
AnyConnect Secure Mobility Client
by:
Unknown
7.8
CVSS
HIGH
Stack Buffer Overflow
119
CWE
Product Name: AnyConnect Secure Mobility Client
Affected Version From: 2.x
Affected Version To: 4.1.2011
Patch Exists: YES
Related CWE: Unknown
CPE: a:cisco:anyconnect_secure_mobility_client
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Unknown
Unknown
Cisco AnyConnect Secure Mobility Client Remote Command Execution
The AnyConnect Secure Mobility Client VPN API suffers from a stack buffer overflow vulnerability when parsing large amount of bytes to the 'strHostNameOrAddress' parameter in 'ConnectVpn' function which resides in the vpnapi.dll library, resulting in memory corruption and overflow of the stack. An attacker can gain access to the system of the affected node and execute arbitrary code.
Mitigation:
Upgrade to Cisco AnyConnect Secure Mobility Client version 3.1.09005, 4.0.04006, 4.1.02004, or 4.1.02011