CVE-2015-6322

Description

The IPC channel in Cisco AnyConnect Secure Mobility Client 2.0.0343 through 4.1(8) allows local users to bypass intended access restrictions and move arbitrary files by leveraging the lack of source-path validation, aka Bug ID CSCuv48563.

Risk Information

Base Score
5.5
MODERATE
Vector
AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N
EPSS Score
Exploitation Probability
0.093

Associated Vulnerability

VulnerabilityOS Platform
Multiple Vulnerabilities are affected in Any Connect (Microsoft Store) 2.3.2016Windows
Multiple Vulnerabilities are affected in Any Connect (Microsoft Store) 2.4.0202Windows
Multiple Vulnerabilities are affected in Any Connect (Microsoft Store) 2.4.1012Windows
Multiple Vulnerabilities are affected in Any Connect (Microsoft Store) 2.5.2006Windows
Multiple Vulnerabilities are affected in Any Connect (Microsoft Store) 2.5.2010Windows
Multiple Vulnerabilities are affected in Any Connect (Microsoft Store) 2.5.2011Windows
Multiple Vulnerabilities are affected in Any Connect (Microsoft Store) 2.5.2014Windows
Multiple Vulnerabilities are affected in Any Connect (Microsoft Store) 2.5.2017Windows
Multiple Vulnerabilities are affected in Any Connect (Microsoft Store) 2.5.2018Windows
Multiple Vulnerabilities are affected in Any Connect (Microsoft Store) 2.5.2019Windows
Multiple Vulnerabilities are affected in Any Connect (Microsoft Store) 3.0.0629Windows
Multiple Vulnerabilities are affected in Any Connect (Microsoft Store) 3.1.0Windows
Multiple Vulnerabilities are affected in Any Connect (Microsoft Store) 2.5.0217Windows
Multiple Vulnerabilities are affected in Any Connect (Microsoft Store) 2.5.3041Windows
Multiple Vulnerabilities are affected in Any Connect (Microsoft Store) 2.5.3046Windows
Multiple Vulnerabilities are affected in Any Connect (Microsoft Store) 2.5.3051Windows
Multiple Vulnerabilities are affected in Any Connect (Microsoft Store) 2.5.3054Windows
Multiple Vulnerabilities are affected in Any Connect (Microsoft Store) 2.5.3055Windows
Multiple Vulnerabilities are affected in Any Connect (Microsoft Store) 3.0.1047Windows
Multiple Vulnerabilities are affected in Any Connect (Microsoft Store) 3.0.2052Windows
Multiple Vulnerabilities are affected in Any Connect (Microsoft Store) 3.0.3050Windows
Multiple Vulnerabilities are affected in Any Connect (Microsoft Store) 3.0.3054Windows
Multiple Vulnerabilities are affected in Any Connect (Microsoft Store) 3.0.4235Windows
Multiple Vulnerabilities are affected in Any Connect (Microsoft Store) 3.0.5075Windows
Multiple Vulnerabilities are affected in Any Connect (Microsoft Store) 3.0.5080Windows
Multiple Vulnerabilities are affected in Any Connect (Microsoft Store) 4.0(64)Windows
Multiple Vulnerabilities are affected in Any Connect (Microsoft Store) 3.1(60)Windows
Multiple Vulnerabilities are affected in Any Connect (Microsoft Store) 4.0(2049)Windows
Vulnerabilities CVE-2015-6305,CVE-2015-6322,CVE-2016-6369 are affected in Any Connect (Microsoft Store) 2.0.0343Windows
Vulnerabilities CVE-2015-6305,CVE-2015-6322,CVE-2016-6369 are affected in Any Connect (Microsoft Store) 2.2.0133Windows
Vulnerabilities CVE-2015-6305,CVE-2015-6322,CVE-2016-6369 are affected in Any Connect (Microsoft Store) 2.2.0136Windows
Vulnerabilities CVE-2015-6305,CVE-2015-6322,CVE-2016-6369 are affected in Any Connect (Microsoft Store) 2.2.0140Windows
Vulnerabilities CVE-2015-6305,CVE-2015-6322,CVE-2016-6369 are affected in Any Connect (Microsoft Store) 2.3.0185Windows
Vulnerabilities CVE-2015-6305,CVE-2015-6322,CVE-2016-6369 are affected in Any Connect (Microsoft Store) 2.3.0254Windows
Vulnerabilities CVE-2015-6305,CVE-2015-6322,CVE-2016-6369 are affected in Any Connect (Microsoft Store) 2.3.1003Windows
Vulnerabilities CVE-2015-6305,CVE-2015-6322,CVE-2016-6369 are affected in Any Connect (Microsoft Store) 2.5_baseWindows
Vulnerabilities CVE-2015-6305,CVE-2015-6322,CVE-2016-6369 are affected in Any Connect (Microsoft Store) 3.0.0Windows
Vulnerabilities CVE-2015-6305,CVE-2015-6322,CVE-2016-6369 are affected in Any Connect (Microsoft Store) 3.0.09231Windows
Vulnerabilities CVE-2015-6305,CVE-2015-6322,CVE-2016-6369 are affected in Any Connect (Microsoft Store) 3.0.09266Windows
Vulnerabilities CVE-2015-6305,CVE-2015-6322,CVE-2016-6369 are affected in Any Connect (Microsoft Store) 3.0.09353Windows
Vulnerabilities CVE-2015-6305,CVE-2015-6322,CVE-2016-6369,CVE-2016-9192 are affected in Any Connect (Microsoft Store) 3.1.02043Windows
Vulnerabilities CVE-2015-6305,CVE-2015-6322,CVE-2016-6369,CVE-2016-9192 are affected in Any Connect (Microsoft Store) 3.1.05182Windows
Vulnerabilities CVE-2015-6305,CVE-2015-6322,CVE-2016-6369,CVE-2016-9192 are affected in Any Connect (Microsoft Store) 3.1.05187Windows
Vulnerabilities CVE-2015-6305,CVE-2015-6322,CVE-2016-6369,CVE-2016-9192 are affected in Any Connect (Microsoft Store) 3.1.06073Windows
Vulnerabilities CVE-2015-6305,CVE-2015-6322,CVE-2016-6369,CVE-2016-9192 are affected in Any Connect (Microsoft Store) 3.1.07021Windows
Vulnerabilities CVE-2015-6305,CVE-2015-6322,CVE-2016-6369,CVE-2016-9192 are affected in Any Connect (Microsoft Store) 4.0(48)Windows
Vulnerabilities CVE-2015-6305,CVE-2015-6322,CVE-2016-6369,CVE-2016-9192 are affected in Any Connect (Microsoft Store) 4.0.0Windows
Multiple Vulnerabilities are affected in Any Connect (Microsoft Store) 4.0.00048Windows
Multiple Vulnerabilities are affected in Any Connect (Microsoft Store) 4.0.00051Windows
Vulnerabilities CVE-2015-6305,CVE-2015-6322,CVE-2016-6369,CVE-2016-9192 are affected in Any Connect (Microsoft Store) 4.1.0Windows
Vulnerabilities CVE-2015-6322,CVE-2016-6369 are affected in Any Connect (Microsoft Store) 2.1.0148Windows
Vulnerabilities CVE-2015-6322,CVE-2016-6369,CVE-2016-9192 are affected in Any Connect (Microsoft Store) 4.1(8)Windows
CVE-2015-6322NCM

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234