Cisco Secure Services Client (CSSC) 4.x, Trust Agent 1.x and 2.x, Cisco Security Agent (CSA) 5.0 and 5.1 (when a vulnerable Trust Agent has been deployed), and the Meetinghouse AEGIS SecureConnect Client do not properly parse commands, which allows local users to gain privileges via unspecified vectors, aka CSCsh30624.
2007-02-22T01:28:00.000
2025-04-09T00:30:58.490
Deferred
CVSSv2: 7.2 (HIGH)
AV:L/AC:L/Au:N/C:C/I:C/A:C
3.9
10.0
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | cisco | secure_services_client | 4.x | Yes |
Application | cisco | security_agent | 5.0 | Yes |
Application | cisco | security_agent | 5.1 | Yes |
Application | cisco | trust_agent | 1 | Yes |
Application | meetinghouse | aegis_secureconnect_client | windows_platform | Yes |