CVE-2012-3088: Cisco AnyConnect Secure Mobility Client
High severity, CVSS 9.3. EPSS: 1.8% chance of exploitation in the next 30 days.
Cisco AnyConnect Secure Mobility Client 3.1.x before 3.1.00495, and 3.2.x, does not check whether an HTTP request originally contains ScanSafe headers, which allows remote attackers to have an unspecified impact via a crafted request, aka Bug ID CSCua13166.
Affected products
- Cisco AnyConnect Secure Mobility Client: version 3.1.0 only; version 3.2.0 only
Published 2012-09-16. Last modified 2026-06-16.