CVE Vulnerabilities

CVE-2011-2041

Published: Jun 02, 2011 | Modified: Sep 07, 2011
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.2 HIGH
AV:L/AC:L/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu

The Start Before Logon (SBL) functionality in Cisco AnyConnect Secure Mobility Client (formerly AnyConnect VPN Client) before 2.3.254 on Windows, and on Windows Mobile, allows local users to gain privileges via unspecified user-interface interaction, aka Bug ID CSCta40556.

Affected Software

Name Vendor Start Version End Version
Anyconnect_secure_mobility_client Cisco * 2.3.2016 (including)
Anyconnect_secure_mobility_client Cisco 2.0 (including) 2.0 (including)
Anyconnect_secure_mobility_client Cisco 2.1 (including) 2.1 (including)
Anyconnect_secure_mobility_client Cisco 2.2 (including) 2.2 (including)
Anyconnect_secure_mobility_client Cisco 2.2.128 (including) 2.2.128 (including)
Anyconnect_secure_mobility_client Cisco 2.2.133 (including) 2.2.133 (including)
Anyconnect_secure_mobility_client Cisco 2.2.136 (including) 2.2.136 (including)
Anyconnect_secure_mobility_client Cisco 2.2.140 (including) 2.2.140 (including)
Anyconnect_secure_mobility_client Cisco 2.3 (including) 2.3 (including)
Anyconnect_secure_mobility_client Cisco 2.3.185 (including) 2.3.185 (including)

References