Security Advisory

CVE-2015-6306

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2015-09-25 01:00:00
Last updated 2024-08-06 07:15:13
Assigner cisco
State PUBLISHED

Description

Cisco AnyConnect Secure Mobility Client 4.1(8) on OS X and Linux does not verify pathnames before installation actions, which allows local users to obtain root privileges via a crafted installation file, aka Bug ID CSCuv11947.