Cisco Anyconnect VPN Client. Cisco warns admins to patch AnyConnect flaws exploited in attacks

preview_player
Показать описание
Cisco Anyconnect VPN Client. Cisco warns admins to patch AnyConnect flaws exploited in attacks. Cisco warned customers today that two security vulnerabilities in the Cisco AnyConnect Secure Mobility Client for Windows are being exploited in the wild.

The AnyConnect Secure Mobility Client simplifies secure enterprise endpoint access and enables employees to work from anywhere while connected to a secure Virtual Private Network (VPN) through Secure Sockets Layer (SSL) and IPsec IKEv2. The two security flaws (tracked as CVE-2020-3433 and CVE-2020-3153) enable local attackers to perform DLL hijacking attacks and copy files to system directories with system-level privileges
Рекомендации по теме
Комментарии
Автор

Cisco got caught lunching out here. Thanks for the info. I didn't hear about this one.

styledox
Автор

At least Cisco doesn't get reported lacking almost every day like Microsoft seems to be.

xavieredwards
join shbcf.ru