CVE Vulnerabilities

CVE-2012-3052

Published: Sep 16, 2012 | Modified: Sep 17, 2012
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
6.9 MEDIUM
AV:L/AC:M/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu

Untrusted search path vulnerability in Cisco VPN Client 5.0 allows local users to gain privileges via a Trojan horse DLL in the current working directory, aka Bug ID CSCua28747.

Affected Software

Name Vendor Start Version End Version
Vpn_client Cisco 5.0 (including) 5.0 (including)
Vpn_client Cisco 5.0.01 (including) 5.0.01 (including)
Vpn_client Cisco 5.0.01.0600 (including) 5.0.01.0600 (including)
Vpn_client Cisco 5.0.2 (including) 5.0.2 (including)
Vpn_client Cisco 5.0.02.0090 (including) 5.0.02.0090 (including)
Vpn_client Cisco 5.0.2.0090 (including) 5.0.2.0090 (including)
Vpn_client Cisco 5.0.03.0530 (including) 5.0.03.0530 (including)
Vpn_client Cisco 5.0.03.0560 (including) 5.0.03.0560 (including)
Vpn_client Cisco 5.0.04.0300 (including) 5.0.04.0300 (including)
Vpn_client Cisco 5.0.5 (including) 5.0.5 (including)
Vpn_client Cisco 5.0.05.0290 (including) 5.0.05.0290 (including)
Vpn_client Cisco 5.0.6 (including) 5.0.6 (including)
Vpn_client Cisco 5.0.06.0160 (including) 5.0.06.0160 (including)
Vpn_client Cisco 5.0.7 (including) 5.0.7 (including)
Vpn_client Cisco 5.0.07.0290 (including) 5.0.07.0290 (including)
Vpn_client Cisco 5.0.07.0410 (including) 5.0.07.0410 (including)
Vpn_client Cisco 5.0.07.0440 (including) 5.0.07.0440 (including)

References