Cisco AnyConnect Secure Mobility Client 3.1.08009 Privilege Elevation

Cisco AnyConnect Secure Mobility Client version 3.1.08009 suffers from a privilege escalation vulnerability. The fix for CVE-2015-4211 is insufficient which allows a local application to elevate to local system through the CMainThread::launchDownloader command.

Leave a Reply