ID:4664 - Exploit for Input validation error in Cisco AnyConnect Secure Mobility Client - CVE-2020-3434
Published: September 28, 2020
Cisco AnyConnect Secure Mobility Client
Link to public exploit:
Vulnerability description
The vulnerability allows a local user to perform a denial of service (DoS) attack.
The vulnerability exists due to insufficient validation of user-supplied input in the interprocess communication (IPC) channel. A local user can send a specially crafted IPC message to the AnyConnect process and perform a denial of service (DoS) attack.