CVE Vulnerabilities

CVE-2006-5808

Published: Nov 08, 2006 | Modified: Jul 20, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4.6 MEDIUM
AV:L/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

The installation of Cisco Secure Desktop (CSD) before 3.1.1.45 uses insecure default permissions (all users full control) for the CSD directory and its parent directory, which allow local users to gain privileges by replacing CSD executables, aka Local Privilege Escalation.

Affected Software

Name Vendor Start Version End Version
Secure_desktop Cisco * 3.1.1.33 (including)
Secure_desktop Cisco 3.1.1.27 (including) 3.1.1.27 (including)

References