// For flags

CVE-2015-7600

 

Severity Score

7.2
*CVSS v2

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

1
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

Cisco VPN Client 5.x through 5.0.07.0440 uses weak permissions for vpnclient.ini, which allows local users to gain privileges by entering an arbitrary program name in the Command field of the ApplicationLauncher section.

Cisco VPN Client 5.x hasta la versión 5.0.07.0440 utiliza permisos débiles para vpnclient.ini, lo que permite a usuarios locales obtener privilegios mediante la entrada de un nombre de programa arbitrario en el campo Command de la sección ApplicationLauncher.

*Credits: N/A
CVSS Scores
Attack Vector
Local
Attack Complexity
Low
Authentication
None
Confidentiality
Complete
Integrity
Complete
Availability
Complete
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2015-09-29 CVE Reserved
  • 2015-10-06 CVE Published
  • 2023-03-08 EPSS Updated
  • 2024-08-06 CVE Updated
  • 2024-08-06 First Exploit
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
CWE
  • CWE-264: Permissions, Privileges, and Access Controls
CAPEC
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Cisco
Search vendor "Cisco"
Vpn Client
Search vendor "Cisco" for product "Vpn Client"
5.0
Search vendor "Cisco" for product "Vpn Client" and version "5.0"
-
Affected
Cisco
Search vendor "Cisco"
Vpn Client
Search vendor "Cisco" for product "Vpn Client"
5.0.01
Search vendor "Cisco" for product "Vpn Client" and version "5.0.01"
-
Affected
Cisco
Search vendor "Cisco"
Vpn Client
Search vendor "Cisco" for product "Vpn Client"
5.0.01.0600
Search vendor "Cisco" for product "Vpn Client" and version "5.0.01.0600"
-
Affected
Cisco
Search vendor "Cisco"
Vpn Client
Search vendor "Cisco" for product "Vpn Client"
5.0.2
Search vendor "Cisco" for product "Vpn Client" and version "5.0.2"
-
Affected
Cisco
Search vendor "Cisco"
Vpn Client
Search vendor "Cisco" for product "Vpn Client"
5.0.02.0090
Search vendor "Cisco" for product "Vpn Client" and version "5.0.02.0090"
-
Affected
Cisco
Search vendor "Cisco"
Vpn Client
Search vendor "Cisco" for product "Vpn Client"
5.0.2.0090
Search vendor "Cisco" for product "Vpn Client" and version "5.0.2.0090"
-
Affected
Cisco
Search vendor "Cisco"
Vpn Client
Search vendor "Cisco" for product "Vpn Client"
5.0.03.0530
Search vendor "Cisco" for product "Vpn Client" and version "5.0.03.0530"
-
Affected
Cisco
Search vendor "Cisco"
Vpn Client
Search vendor "Cisco" for product "Vpn Client"
5.0.03.0560
Search vendor "Cisco" for product "Vpn Client" and version "5.0.03.0560"
-
Affected
Cisco
Search vendor "Cisco"
Vpn Client
Search vendor "Cisco" for product "Vpn Client"
5.0.04.0300
Search vendor "Cisco" for product "Vpn Client" and version "5.0.04.0300"
-
Affected
Cisco
Search vendor "Cisco"
Vpn Client
Search vendor "Cisco" for product "Vpn Client"
5.0.5
Search vendor "Cisco" for product "Vpn Client" and version "5.0.5"
-
Affected
Cisco
Search vendor "Cisco"
Vpn Client
Search vendor "Cisco" for product "Vpn Client"
5.0.05.0290
Search vendor "Cisco" for product "Vpn Client" and version "5.0.05.0290"
-
Affected
Cisco
Search vendor "Cisco"
Vpn Client
Search vendor "Cisco" for product "Vpn Client"
5.0.6
Search vendor "Cisco" for product "Vpn Client" and version "5.0.6"
-
Affected
Cisco
Search vendor "Cisco"
Vpn Client
Search vendor "Cisco" for product "Vpn Client"
5.0.06.0160
Search vendor "Cisco" for product "Vpn Client" and version "5.0.06.0160"
-
Affected
Cisco
Search vendor "Cisco"
Vpn Client
Search vendor "Cisco" for product "Vpn Client"
5.0.7
Search vendor "Cisco" for product "Vpn Client" and version "5.0.7"
-
Affected
Cisco
Search vendor "Cisco"
Vpn Client
Search vendor "Cisco" for product "Vpn Client"
5.0.7.0240
Search vendor "Cisco" for product "Vpn Client" and version "5.0.7.0240"
-
Affected
Cisco
Search vendor "Cisco"
Vpn Client
Search vendor "Cisco" for product "Vpn Client"
5.0.7.0290
Search vendor "Cisco" for product "Vpn Client" and version "5.0.7.0290"
-
Affected
Cisco
Search vendor "Cisco"
Vpn Client
Search vendor "Cisco" for product "Vpn Client"
5.0.07.0290
Search vendor "Cisco" for product "Vpn Client" and version "5.0.07.0290"
-
Affected
Cisco
Search vendor "Cisco"
Vpn Client
Search vendor "Cisco" for product "Vpn Client"
5.0.07.0410
Search vendor "Cisco" for product "Vpn Client" and version "5.0.07.0410"
-
Affected
Cisco
Search vendor "Cisco"
Vpn Client
Search vendor "Cisco" for product "Vpn Client"
5.0.07.0440
Search vendor "Cisco" for product "Vpn Client" and version "5.0.07.0440"
-
Affected
Cisco
Search vendor "Cisco"
Vpn Client
Search vendor "Cisco" for product "Vpn Client"
5.0.7.0440
Search vendor "Cisco" for product "Vpn Client" and version "5.0.7.0440"
-
Affected