CVE-2015-0755

Description

The Posture module for Cisco Identity Services Engine (ISE), as distributed in Cisco AnyConnect Secure Mobility Client 4.0(64), allows local users to gain privileges via unspecified commands, aka Bug ID CSCut05797.

Risk Information

Base Score
7.8
MODERATE
Vector
AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
EPSS Score
Exploitation Probability
0.055

Associated Vulnerability

VulnerabilityOS Platform
Multiple Vulnerabilities are affected in Cisco AnyConnect Secure Mobility Client For Windows 4.0Windows
Multiple Vulnerabilities are affected in Any Connect (Microsoft Store) 4.0(64)Windows
Cisco Identity Services Engine Privilege Escalation Vulnerability For Cisco AnyConnect Secure Mobility ClientNCM
Improper Access Control Vulnerability (CVE-2015-0755)NCM

Patch Details

Click to see the patches provided by ManageEngine for this CVE
Patch IDPatch Description
PATCH-1705981Security Update for Cisco AnyConnect Secure Mobility Client 4.3(2034)
PATCH-338372Cisco AnyConnect Secure Mobility Client (4.10.08029) (Manual Upload Required)

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234