- Description
- The Cisco VPN 5000 Client for MacOS before 5.2.2 records the most recently used login password in plaintext when saving "Default Connection" settings, which could allow local users to gain privileges.
- Source
- cve@mitre.org
- NVD status
- Analyzed
CVSS 2.0
- Type
- Primary
- Base score
- 5
- Impact score
- 2.9
- Exploitability score
- 10
- Vector string
- AV:N/AC:L/Au:N/C:P/I:N/A:N
- Hype score
- Not currently trending
[
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:a:cisco:vpn_5000_client:5.1.2:*:macos:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "FF8AFE02-B175-4989-ABF3-1B59DA6B5F71"
},
{
"criteria": "cpe:2.3:a:cisco:vpn_5000_client:5.2.1:*:macos:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "4E897D07-0789-495B-BD1B-E2129192E856"
}
],
"operator": "OR"
}
]
}
]