iDEFENSE Security Advisory 2011-06-01.1

0
59

iDefense Security Advisory 06.01.11 – Remote exploitation of a design error within Cisco Systems Inc’s AnyConnect VPN client allows attackers to execute arbitrary code with the privileges of a user running Internet Explorer. Cisco AnyConnect VPN client versions prior to 2.3.185 for Windows, 2.5.3041 and 3.0.629 for Linux and Apple Mac OS X are vulnerable.

Source: iDEFENSE Security Advisory 2011-06-01.1