CVE-2007-4414

Cisco VPN Client <4.8.02.0010 - Privilege Escalation

Title source: llm
STIX 2.1

Description

Cisco VPN Client on Windows before 4.8.02.0010 allows local users to gain privileges by enabling the "Start Before Logon" (SBL) and Microsoft Dial-Up Networking options, and then interacting with the dial-up networking dialog box.

References (6)

Core 6
Core References
Vendor Advisory vendor-advisory x_refsource_cisco
http://www.cisco.com/warp/public/707/cisco-sa-20070815-vpnclient.shtml
Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/26459
Patch vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/25332
Third Party Advisory vdb-entry x_refsource_vupen
http://www.vupen.com/english/advisories/2007/2903
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/36029
Third Party Advisory, VDB Entry vdb-entry x_refsource_sectrack
http://securitytracker.com/id?1018573

Scores

EPSS 0.0033
EPSS Percentile 25.7%

Details

Status published
Products (1)
cisco/vpn_client < 4.8.1
Published Aug 18, 2007
Tracked Since Feb 18, 2026