CVE-2015-0761: Cisco AnyConnect Secure Mobility Client

High severity, CVSS 7.2. EPSS: 0.4% chance of exploitation in the next 30 days.

Cisco AnyConnect Secure Mobility Client before 3.1(8009) and 4.x before 4.0(2052) on Linux does not properly implement unspecified internal functions, which allows local users to obtain root privileges via crafted vpnagent options, aka Bug ID CSCus86790.

Affected products

  • Cisco AnyConnect Secure Mobility Client: up to and including 3.1\(.07021\); version 4.0(.00048) only; version 4.0(.00051) only

Published 2015-06-04. Last modified 2026-06-17.