THREATOPS
THREAT OPSThreat News › [NVD] CVE-2020-3153 (MEDIUM 6.5) — A vulnerability in the installer component of Cisco AnyConnect Secure Mobility Client for Windows could allow an authenticated local attacker to copy user-supplied files to system level directories with system level privileges. The vulnerability is due to the incorrect handling o

[NVD] CVE-2020-3153 (MEDIUM 6.5) — A vulnerability in the installer component of Cisco AnyConnect Secure Mobility Client for Windows could allow an authenticated local attacker to copy user-supplied files to system level directories with system level privileges. The vulnerability is due to the incorrect handling o

lownvdPublished 2020-02-19

CVE-2020-3153 CVSS: 6.5 MEDIUM Published: 2020-02-19T20:15:15.113

A vulnerability in the installer component of Cisco AnyConnect Secure Mobility Client for Windows could allow an authenticated local attacker to copy user-supplied files to system level directories with system level privileges. The vulnerability is due to the incorrect handling of directory paths. An attacker could exploit this vul

MITRE ATT&CK techniques

Indicators of compromise

Original source: https://nvd.nist.gov/vuln/detail/CVE-2020-3153