fkie_cve-2013-1173
Vulnerability from fkie_nvd
Published
2013-04-11 10:55
Modified
2025-04-11 00:51
Severity ?
Summary
Heap-based buffer overflow in ciscod.exe in the Cisco Security Service in Cisco AnyConnect Secure Mobility Client (aka AnyConnect VPN Client) allows local users to gain privileges via unspecified vectors, aka Bug ID CSCud14143.
Impacted products
Vendor Product Version
cisco anyconnect_secure_mobility_client -
cisco anyconnect_secure_mobility_client 2.0
cisco anyconnect_secure_mobility_client 2.1
cisco anyconnect_secure_mobility_client 2.2
cisco anyconnect_secure_mobility_client 2.2.128
cisco anyconnect_secure_mobility_client 2.2.133
cisco anyconnect_secure_mobility_client 2.2.136
cisco anyconnect_secure_mobility_client 2.2.140
cisco anyconnect_secure_mobility_client 2.3
cisco anyconnect_secure_mobility_client 2.3.185
cisco anyconnect_secure_mobility_client 2.3.254
cisco anyconnect_secure_mobility_client 2.3.2016
cisco anyconnect_secure_mobility_client 2.4
cisco anyconnect_secure_mobility_client 2.4
cisco anyconnect_secure_mobility_client 2.4.0202
cisco anyconnect_secure_mobility_client 2.4.1012
cisco anyconnect_secure_mobility_client 2.4.4004
cisco anyconnect_secure_mobility_client 2.4.4014
cisco anyconnect_secure_mobility_client 2.4.5004
cisco anyconnect_secure_mobility_client 2.4.7030
cisco anyconnect_secure_mobility_client 2.4.7073
cisco anyconnect_secure_mobility_client 2.5
cisco anyconnect_secure_mobility_client 2.5.0217
cisco anyconnect_secure_mobility_client 2.5.1025
cisco anyconnect_secure_mobility_client 2.5.2001
cisco anyconnect_secure_mobility_client 2.5.2006
cisco anyconnect_secure_mobility_client 2.5.2010
cisco anyconnect_secure_mobility_client 2.5.2011
cisco anyconnect_secure_mobility_client 2.5.2014
cisco anyconnect_secure_mobility_client 2.5.2017
cisco anyconnect_secure_mobility_client 2.5.2018
cisco anyconnect_secure_mobility_client 2.5.2019
cisco anyconnect_secure_mobility_client 2.5.3041
cisco anyconnect_secure_mobility_client 2.5.3046
cisco anyconnect_secure_mobility_client 2.5.3051
cisco anyconnect_secure_mobility_client 2.5.3054
cisco anyconnect_secure_mobility_client 2.5.3055
cisco anyconnect_secure_mobility_client 2.5.5112
cisco anyconnect_secure_mobility_client 2.5.5116
cisco anyconnect_secure_mobility_client 2.5.5118
cisco anyconnect_secure_mobility_client 2.5.5125
cisco anyconnect_secure_mobility_client 2.5.5130
cisco anyconnect_secure_mobility_client 2.5.5131
cisco anyconnect_secure_mobility_client 2.5.6005
cisco anyconnect_secure_mobility_client 3.0
cisco anyconnect_secure_mobility_client 3.0
cisco anyconnect_secure_mobility_client 3.0.0629
cisco anyconnect_secure_mobility_client 3.0.1047
cisco anyconnect_secure_mobility_client 3.0.2052
cisco anyconnect_secure_mobility_client 3.0.3050
cisco anyconnect_secure_mobility_client 3.0.3054
cisco anyconnect_secure_mobility_client 3.0.4235
cisco anyconnect_secure_mobility_client 3.0.5075
cisco anyconnect_secure_mobility_client 3.0.5080
cisco anyconnect_secure_mobility_client 3.0.07059
cisco anyconnect_secure_mobility_client 3.0.08057
cisco anyconnect_secure_mobility_client 3.0.08057
cisco anyconnect_secure_mobility_client 3.0.08066
cisco anyconnect_secure_mobility_client 3.1.0
cisco anyconnect_secure_mobility_client 3.1.00495
cisco anyconnect_secure_mobility_client 3.2.0



{
  "configurations": [
    {
      "nodes": [
        {
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:a:cisco:anyconnect_secure_mobility_client:-:*:*:*:*:*:*:*",
              "matchCriteriaId": "8A1CB222-036F-4598-8E55-D367846FF04E",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:cisco:anyconnect_secure_mobility_client:2.0:*:*:*:*:*:*:*",
              "matchCriteriaId": "6B522088-2084-491B-98F0-3E3CCD88131F",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:cisco:anyconnect_secure_mobility_client:2.1:*:*:*:*:*:*:*",
              "matchCriteriaId": "DA179B71-AC81-4587-8FB1-0466B2550975",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:cisco:anyconnect_secure_mobility_client:2.2:*:*:*:*:*:*:*",
              "matchCriteriaId": "210B66BB-4E2C-4D9E-BFBB-69916A42287C",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:cisco:anyconnect_secure_mobility_client:2.2.128:*:*:*:*:*:*:*",
              "matchCriteriaId": "B77EB2C9-BACE-46EA-AA72-FF1C7EB1A5F4",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:cisco:anyconnect_secure_mobility_client:2.2.133:*:*:*:*:*:*:*",
              "matchCriteriaId": "06527370-E73A-40FF-8E02-E0337536C7C1",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:cisco:anyconnect_secure_mobility_client:2.2.136:*:*:*:*:*:*:*",
              "matchCriteriaId": "A617295C-F518-4BC7-8442-E476448D8F01",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:cisco:anyconnect_secure_mobility_client:2.2.140:*:*:*:*:*:*:*",
              "matchCriteriaId": "E71A1D6B-8E87-4E3A-A1AE-DE44C2C348F9",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:cisco:anyconnect_secure_mobility_client:2.3:*:*:*:*:*:*:*",
              "matchCriteriaId": "B8AD6158-17AB-443D-8EC1-5FDE5852CAEC",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:cisco:anyconnect_secure_mobility_client:2.3.185:*:*:*:*:*:*:*",
              "matchCriteriaId": "0BBF395D-9E90-44C1-8E99-3631FFF24487",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:cisco:anyconnect_secure_mobility_client:2.3.254:*:*:*:*:*:*:*",
              "matchCriteriaId": "E874C1CB-5F13-45DE-98EF-48C9DCC0DA80",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:cisco:anyconnect_secure_mobility_client:2.3.2016:*:*:*:*:*:*:*",
              "matchCriteriaId": "184A5DAA-9BDB-4C2D-80DC-E2E21356676A",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:cisco:anyconnect_secure_mobility_client:2.4:*:*:*:*:*:*:*",
              "matchCriteriaId": "BB04F55C-D373-42FF-8CEE-88762BA1BD62",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:cisco:anyconnect_secure_mobility_client:2.4:*:*:*:*:symbian_os:*:*",
              "matchCriteriaId": "CECD4EF3-0866-4EF1-82B5-9963738A7478",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:cisco:anyconnect_secure_mobility_client:2.4.0202:*:*:*:*:*:*:*",
              "matchCriteriaId": "5B1E5D16-BD4E-417C-851B-AEC74D1F84FC",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:cisco:anyconnect_secure_mobility_client:2.4.1012:*:*:*:*:*:*:*",
              "matchCriteriaId": "8B9822AE-2ACE-424A-BB03-4457923E812E",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:cisco:anyconnect_secure_mobility_client:2.4.4004:*:*:*:*:iphone_os:*:*",
              "matchCriteriaId": "B892253B-769B-4DF9-B9E3-B65B411E7A2F",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:cisco:anyconnect_secure_mobility_client:2.4.4014:*:*:*:*:iphone_os:*:*",
              "matchCriteriaId": "BD7AA5BB-13E7-4A69-BB68-33CEC22CD66F",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:cisco:anyconnect_secure_mobility_client:2.4.5004:*:*:*:*:symbian_os:*:*",
              "matchCriteriaId": "1F6D108D-EB11-4AC0-9E94-C8A2D36CE3F6",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:cisco:anyconnect_secure_mobility_client:2.4.7030:*:*:*:*:android:*:*",
              "matchCriteriaId": "CF2ADCC5-62A8-40C3-875F-8DB53474E60E",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:cisco:anyconnect_secure_mobility_client:2.4.7073:*:*:*:*:android:*:*",
              "matchCriteriaId": "9ABA89DD-1CDC-46B3-A276-980BC0D9A4EC",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:cisco:anyconnect_secure_mobility_client:2.5:*:*:*:*:*:*:*",
              "matchCriteriaId": "D85B4988-85C9-4E28-B526-862B6EB8A436",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:cisco:anyconnect_secure_mobility_client:2.5.0217:*:*:*:*:*:*:*",
              "matchCriteriaId": "2EF2B696-85BA-492E-AB95-A1A7427429CD",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:cisco:anyconnect_secure_mobility_client:2.5.1025:*:*:*:*:*:*:*",
              "matchCriteriaId": "818C7378-6587-4F08-A8F1-C2E2D3DFFE0C",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:cisco:anyconnect_secure_mobility_client:2.5.2001:*:*:*:*:*:*:*",
              "matchCriteriaId": "F2646BB0-DC7B-47E9-9EF1-9E70F328DE0B",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:cisco:anyconnect_secure_mobility_client:2.5.2006:*:*:*:*:*:*:*",
              "matchCriteriaId": "C41B8BA4-3242-464D-A9E0-15018C8CB495",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:cisco:anyconnect_secure_mobility_client:2.5.2010:*:*:*:*:*:*:*",
              "matchCriteriaId": "D713E198-7C64-4D7C-9DE9-C84FBE26B571",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:cisco:anyconnect_secure_mobility_client:2.5.2011:*:*:*:*:*:*:*",
              "matchCriteriaId": "AE3B606D-1E0E-4276-BFD4-31D6BD96FE1C",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:cisco:anyconnect_secure_mobility_client:2.5.2014:*:*:*:*:*:*:*",
              "matchCriteriaId": "B3A37930-E737-46E9-BD83-99D72C31A551",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:cisco:anyconnect_secure_mobility_client:2.5.2017:*:*:*:*:*:*:*",
              "matchCriteriaId": "93A65C87-E948-4BFF-AFE5-3180701AFDA3",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:cisco:anyconnect_secure_mobility_client:2.5.2018:*:*:*:*:*:*:*",
              "matchCriteriaId": "39FDA0C8-8315-4899-B0C5-DE234784E50D",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:cisco:anyconnect_secure_mobility_client:2.5.2019:*:*:*:*:*:*:*",
              "matchCriteriaId": "6C3D6B5A-A836-490E-B295-DE9832EC2DA3",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:cisco:anyconnect_secure_mobility_client:2.5.3041:*:*:*:*:*:*:*",
              "matchCriteriaId": "7D7D1894-0E58-43BA-9A40-82E3D8648FF7",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:cisco:anyconnect_secure_mobility_client:2.5.3046:*:*:*:*:*:*:*",
              "matchCriteriaId": "111D94E9-AC3C-41E8-8F47-F5A72B27DE9C",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:cisco:anyconnect_secure_mobility_client:2.5.3051:*:*:*:*:*:*:*",
              "matchCriteriaId": "E78742CF-1043-41BC-9789-8A8FA9460FF5",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:cisco:anyconnect_secure_mobility_client:2.5.3054:*:*:*:*:*:*:*",
              "matchCriteriaId": "CA3903F0-39C8-43B4-A117-812583EEE94F",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:cisco:anyconnect_secure_mobility_client:2.5.3055:*:*:*:*:*:*:*",
              "matchCriteriaId": "CED47F1A-7A16-484C-A71C-E5FC739A3AB4",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:cisco:anyconnect_secure_mobility_client:2.5.5112:*:*:*:*:iphone_os:*:*",
              "matchCriteriaId": "FE3B3EE1-825A-498D-B7CF-AD581AD52F27",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:cisco:anyconnect_secure_mobility_client:2.5.5116:*:*:*:*:android:*:*",
              "matchCriteriaId": "3C97B8BD-165F-4A5B-BB7F-95924DBB1E35",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:cisco:anyconnect_secure_mobility_client:2.5.5118:*:*:*:*:android:*:*",
              "matchCriteriaId": "175C28F9-D982-4893-9860-1923B554A292",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:cisco:anyconnect_secure_mobility_client:2.5.5125:*:*:*:*:android:*:*",
              "matchCriteriaId": "A24DFA2C-CFC5-4B46-BA40-4CCB5D163786",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:cisco:anyconnect_secure_mobility_client:2.5.5130:*:*:*:*:iphone_os:*:*",
              "matchCriteriaId": "84EED2C0-D44F-4A12-B596-74B5FEB8961C",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:cisco:anyconnect_secure_mobility_client:2.5.5131:*:*:*:*:android:*:*",
              "matchCriteriaId": "31C51F6F-BADC-4FBF-8D33-BA5C6DE647C7",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:cisco:anyconnect_secure_mobility_client:2.5.6005:*:*:*:*:*:*:*",
              "matchCriteriaId": "8A74CA27-8F2B-43AF-8505-310E0B97F3D2",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:cisco:anyconnect_secure_mobility_client:3.0:*:*:*:*:*:*:*",
              "matchCriteriaId": "5F1A7236-46E3-487A-998B-4D72A5EEA004",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:cisco:anyconnect_secure_mobility_client:3.0:*:*:*:*:*:x64:*",
              "matchCriteriaId": "7A2091E5-20BF-4F60-A02B-E51BD936113F",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:cisco:anyconnect_secure_mobility_client:3.0.0629:*:*:*:*:*:*:*",
              "matchCriteriaId": "9BA1D619-5FC6-4F45-B35A-1C029729146A",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:cisco:anyconnect_secure_mobility_client:3.0.1047:*:*:*:*:*:*:*",
              "matchCriteriaId": "4279AC14-F659-4592-976E-E81B528EF6AE",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:cisco:anyconnect_secure_mobility_client:3.0.2052:*:*:*:*:*:*:*",
              "matchCriteriaId": "AF0D59FA-777E-4017-972E-54B4E9A39A1E",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:cisco:anyconnect_secure_mobility_client:3.0.3050:*:*:*:*:*:*:*",
              "matchCriteriaId": "1FA8AE9E-221C-4117-B9B6-842AC529B313",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:cisco:anyconnect_secure_mobility_client:3.0.3054:*:*:*:*:*:*:*",
              "matchCriteriaId": "C9DC7395-6976-4FB2-904E-0E7EA5EFF44B",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:cisco:anyconnect_secure_mobility_client:3.0.4235:*:*:*:*:*:*:*",
              "matchCriteriaId": "55BB9930-B838-4326-AC8B-9FF9690BF570",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:cisco:anyconnect_secure_mobility_client:3.0.5075:*:*:*:*:*:*:*",
              "matchCriteriaId": "BC719878-4AC0-4EDF-BA63-3355078DE646",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:cisco:anyconnect_secure_mobility_client:3.0.5080:*:*:*:*:*:*:*",
              "matchCriteriaId": "5D05F500-75AB-41DA-8492-5AFD7D0BA475",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:cisco:anyconnect_secure_mobility_client:3.0.07059:*:*:*:*:*:*:*",
              "matchCriteriaId": "45EF20F7-1CAA-41F9-A937-B4FDC03BDCEC",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:cisco:anyconnect_secure_mobility_client:3.0.08057:*:*:*:*:*:*:*",
              "matchCriteriaId": "899F95BB-6AE0-4319-AB3C-260155C4B65A",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:cisco:anyconnect_secure_mobility_client:3.0.08057:*:*:*:*:*:x64:*",
              "matchCriteriaId": "2F723EAC-336E-49BB-8A65-84FF4E9055E4",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:cisco:anyconnect_secure_mobility_client:3.0.08066:*:*:*:*:*:*:*",
              "matchCriteriaId": "D4F49B78-352C-4165-AAB0-CC55886F9D43",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:cisco:anyconnect_secure_mobility_client:3.1.0:*:*:*:*:*:*:*",
              "matchCriteriaId": "7CFE1E12-CAEE-4CB5-8969-D6F92451F69B",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:cisco:anyconnect_secure_mobility_client:3.1.00495:*:*:*:*:*:*:*",
              "matchCriteriaId": "277996FD-C2B9-4C96-B3AA-FCF1B50EEE81",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:cisco:anyconnect_secure_mobility_client:3.2.0:*:*:*:*:*:*:*",
              "matchCriteriaId": "B18B5AB9-83E9-444E-94D1-EB10475D66E0",
              "vulnerable": true
            }
          ],
          "negate": false,
          "operator": "OR"
        }
      ]
    }
  ],
  "cveTags": [],
  "descriptions": [
    {
      "lang": "en",
      "value": "Heap-based buffer overflow in ciscod.exe in the Cisco Security Service in Cisco AnyConnect Secure Mobility Client (aka AnyConnect VPN Client) allows local users to gain privileges via unspecified vectors, aka Bug ID CSCud14143."
    },
    {
      "lang": "es",
      "value": "Desbordamiento de b\u00fafer basado en pila en ciscod.exe en el Servicio de Seguridad de Cisco en Cisco AnyConnect Secure Mobility Client (tambi\u00e9n conocido como AnyConnect VPN Client) permite a usuarios locales obtener privilegios a trav\u00e9s de vectores no especificados, tambi\u00e9n conocido como Bug ID CSCud14143."
    }
  ],
  "id": "CVE-2013-1173",
  "lastModified": "2025-04-11T00:51:21.963",
  "metrics": {
    "cvssMetricV2": [
      {
        "acInsufInfo": false,
        "baseSeverity": "MEDIUM",
        "cvssData": {
          "accessComplexity": "MEDIUM",
          "accessVector": "LOCAL",
          "authentication": "SINGLE",
          "availabilityImpact": "COMPLETE",
          "baseScore": 6.6,
          "confidentialityImpact": "COMPLETE",
          "integrityImpact": "COMPLETE",
          "vectorString": "AV:L/AC:M/Au:S/C:C/I:C/A:C",
          "version": "2.0"
        },
        "exploitabilityScore": 2.7,
        "impactScore": 10.0,
        "obtainAllPrivilege": false,
        "obtainOtherPrivilege": false,
        "obtainUserPrivilege": false,
        "source": "nvd@nist.gov",
        "type": "Primary",
        "userInteractionRequired": false
      }
    ]
  },
  "published": "2013-04-11T10:55:02.107",
  "references": [
    {
      "source": "psirt@cisco.com",
      "tags": [
        "Vendor Advisory"
      ],
      "url": "http://tools.cisco.com/security/center/content/CiscoSecurityNotice/CVE-2013-1173"
    },
    {
      "source": "af854a3a-2127-422b-91ae-364da2661108",
      "tags": [
        "Vendor Advisory"
      ],
      "url": "http://tools.cisco.com/security/center/content/CiscoSecurityNotice/CVE-2013-1173"
    }
  ],
  "sourceIdentifier": "psirt@cisco.com",
  "vulnStatus": "Deferred",
  "weaknesses": [
    {
      "description": [
        {
          "lang": "en",
          "value": "CWE-119"
        }
      ],
      "source": "nvd@nist.gov",
      "type": "Primary"
    }
  ]
}


Log in or create an account to share your comment.




Tags
Taxonomy of the tags.


Loading…

Loading…

Loading…

Sightings

Author Source Type Date

Nomenclature

  • Seen: The vulnerability was mentioned, discussed, or seen somewhere by the user.
  • Confirmed: The vulnerability is confirmed from an analyst perspective.
  • Exploited: This vulnerability was exploited and seen by the user reporting the sighting.
  • Patched: This vulnerability was successfully patched by the user reporting the sighting.
  • Not exploited: This vulnerability was not exploited or seen by the user reporting the sighting.
  • Not confirmed: The user expresses doubt about the veracity of the vulnerability.
  • Not patched: This vulnerability was not successfully patched by the user reporting the sighting.


Loading…

Loading…