CVE-2009-5008

Cisco Secure Desktop - Policy Restriction Bypass via Modified Executable File

Title source: llm
STIX 2.1

Description

Cisco Secure Desktop (CSD), when used in conjunction with an AnyConnect SSL VPN server, does not properly perform verification, which allows local users to bypass intended policy restrictions via a modified executable file.

References (1)

Core 1
Core References
Various Sources x_refsource_misc
http://www.infradead.org/openconnect.html

Scores

EPSS 0.0035
EPSS Percentile 27.9%

Details

CWE
CWE-264
Status published
Products (1)
cisco/secure_desktop
Published Oct 14, 2010
Tracked Since Feb 18, 2026