Cisco / Secure Desktop
13 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2015-0691 | A certain Cisco JAR file, as distributed in Cache Cleaner in Cisco Secure Desktop (CSD), allows remote attackers to execute arbitrary commands via a crafted we… | HIGH | 9.3 | Apr 17, 2015 |
| CVE-2012-4655 | The WebLaunch feature in Cisco Secure Desktop before 3.6.6020 does not properly validate binaries that are received by the downloader process, which allows rem… | HIGH | 9.3 | Sep 24, 2012 |
| CVE-2012-2495 | The HostScan downloader implementation in Cisco AnyConnect Secure Mobility Client 3.x before 3.0 MR8 and Cisco Secure Desktop before 3.6.6020 does not compare… | MEDIUM | 4.3 | Jun 20, 2012 |
| CVE-2011-0925 | The CSDWebInstallerCtrl ActiveX control in CSDWebInstaller.ocx in Cisco Secure Desktop (CSD) allows remote attackers to download an unintended Cisco program on… | HIGH | 9.3 | Feb 28, 2011 |
| CVE-2011-0926 | A certain ActiveX control in CSDWebInstaller.ocx in Cisco Secure Desktop (CSD) does not properly verify the signature of an unspecified downloaded program, whi… | HIGH | 9.3 | Feb 25, 2011 |
| CVE-2009-5008 | Cisco Secure Desktop (CSD), when used in conjunction with an AnyConnect SSL VPN server, does not properly perform verification, which allows local users to byp… | LOW | 2.1 | Oct 12, 2010 |
| CVE-2010-0589 | The Web Install ActiveX control (CSDWebInstaller) in Cisco Secure Desktop (CSD) before 3.5.841 does not properly verify the signatures of downloaded programs,… | HIGH | 9.3 | Apr 15, 2010 |
| CVE-2010-0440 | Cross-site scripting (XSS) vulnerability in +CSCOT+/translation in Cisco Secure Desktop 3.4.2048, and other versions before 3.5; as used in Cisco ASA appliance… | MEDIUM | 4.3 | Feb 3, 2010 |
| CVE-2006-5808 | The installation of Cisco Secure Desktop (CSD) before 3.1.1.45 uses insecure default permissions (all users full control) for the CSD directory and its parent… | MEDIUM | 4.6 | Nov 8, 2006 |
| CVE-2006-5807 | Cisco Secure Desktop (CSD) before 3.1.1.45 allows local users to escape out of the secure desktop environment by using certain applications that switch to the… | MEDIUM | 4.6 | Nov 8, 2006 |
| CVE-2006-5806 | SSL VPN Client in Cisco Secure Desktop before 3.1.1.45, when configured to spawn a web browser after a successful connection, stores sensitive browser session… | LOW | 2.1 | Nov 8, 2006 |
| CVE-2006-5394 | The default configuration of Cisco Secure Desktop (CSD) has an unchecked "Disable printing" box in Secure Desktop Settings, which might allow local users to re… | LOW | 2.1 | Oct 18, 2006 |
| CVE-2006-5393 | Cisco Secure Desktop (CSD) does not require that the ClearPageFileAtShutdown (aka CCE-Winv2.0-407) registry value equals 1, which might allow local users to re… | MEDIUM | 5.5 | Oct 18, 2006 |
Showing 1 to 13 of 13 CVEs