Insecure DLL loading in Cisco AnyConnect Secure Mobility Client - CVE-2020-3433
Published: August 6, 2020 / Updated: October 24, 2022
Vulnerability details
The vulnerability allows a local user to compromise vulnerable system.
The vulnerability exists due to the application loads DLL libraries in an insecure manner in the interprocess communication (IPC) channel. A local user can send a specially crafted IPC message to the AnyConnect process and execute arbitrary code on victim's system.
Affected software
How to mitigate CVE-2020-3433
Links to Public Exploits and PoC-codes
- Exploit #4666 - Cisco AnyConnect Privilege Escalations (CVE-2020-3153 and CVE-2020-3433) (September 30, 2020)
- Exploit #4663 - CVE-2020-3433 (PoCs and technical analysis of three vulnerabilities found on Cisco AnyConnect for Windows: CVE-2020-3433, CVE-2020-3434 and CVE-2020-3435 ) (September 28, 2020)